NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 53090 | CVE-2007-0874 | Allons_voter 1.0 allows remote attackers to bypass authentication and access certain administrative functionality via a direct request for (1) admin_ajouter.php or (2) admin_supprimer.php. NOTE: this could be leveraged to conduct cross-site scripting (XSS) attacks. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 53346 | CVE-2007-1139 | Unrestricted file upload vulnerability in Cromosoft Simple Plantilla PHP (SPP) allows remote attackers to upload arbitrary scripts via a filename with a double extension. | 2 | 10 | High | 2017-01-07 | 2008-11-15 | View | |
| 55394 | CVE-2007-3241 | Cross-site scripting (XSS) vulnerability in blogroll.php in the cordobo-green-park theme for WordPress allows remote attackers to inject arbitrary web script or HTML via the PHP_SELF portion of a URI. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 55650 | CVE-2007-3499 | SlackRoll before 8 accepts gpg exit codes other than 0 and 1 as evidence of a valid signature, which allows remote Slackware mirror sites or man-in-the-middle attackers to cause a denial of service (data inconsistency) or possibly install Trojan horse packages via malformed gpg signatures. | 2 | 6.4 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 55906 | CVE-2007-3759 | Safari in Apple iPhone 1.1.1, when requested to disable Javascript, does not disable it until Safari is restarted, which might leave Safari open to attacks that the user does not expect. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 2379 of 17672, showing 5 records out of 88360 total, starting on record 11891, ending on 11895