NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
56684  CVE-2007-4564  Cosminexus Manager in Cosminexus Application Server 07-00 and later might assign the wrong user"s group permissions to logical user server processes, which allows local users to gain privileges.    4.6  Medium  2017-01-07  2008-11-15  View
57196  CVE-2007-5113  report.cgi in Google Urchin allows remote attackers to bypass authentication and obtain sensitive information (web server logs) via certain modified query parameters, as demonstrated using the profile, rid, prefs, n, vid, bd, ed, dt, and gtype parameters, a different vulnerability than CVE-2007-5112.    Medium  2017-01-07  2008-11-15  View
57452  CVE-2007-5387  PHP remote file inclusion vulnerability in active/components/xmlrpc/client.php in Pindorama 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the c[components] parameter.    6.8  Medium  2017-01-07  2008-11-15  View
57964  CVE-2007-5939  The gss_userok function in appl/ftp/ftpd/gss_userok.c in Heimdal 0.7.2 does not allocate memory for the ticketfile pointer before calling free, which allows remote attackers to have an unknown impact via an invalid username. NOTE: the vulnerability was originally reported for ftpd.c, but this is incorrect.    10  High  2017-01-07  2008-11-15  View
53101  CVE-2007-0885  Cross-site scripting (XSS) vulnerability in jira/secure/BrowseProject.jspa in Rainbow with the Zen (Rainbow.Zen) extension allows remote attackers to inject arbitrary web script or HTML via the id parameter.    6.8  Medium  2017-01-07  2008-11-15  View

Page 2388 of 17672, showing 5 records out of 88360 total, starting on record 11936, ending on 11940

Actions