NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 56684 | CVE-2007-4564 | Cosminexus Manager in Cosminexus Application Server 07-00 and later might assign the wrong user"s group permissions to logical user server processes, which allows local users to gain privileges. | 2 | 4.6 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57196 | CVE-2007-5113 | report.cgi in Google Urchin allows remote attackers to bypass authentication and obtain sensitive information (web server logs) via certain modified query parameters, as demonstrated using the profile, rid, prefs, n, vid, bd, ed, dt, and gtype parameters, a different vulnerability than CVE-2007-5112. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57452 | CVE-2007-5387 | PHP remote file inclusion vulnerability in active/components/xmlrpc/client.php in Pindorama 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the c[components] parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57964 | CVE-2007-5939 | The gss_userok function in appl/ftp/ftpd/gss_userok.c in Heimdal 0.7.2 does not allocate memory for the ticketfile pointer before calling free, which allows remote attackers to have an unknown impact via an invalid username. NOTE: the vulnerability was originally reported for ftpd.c, but this is incorrect. | 2 | 10 | High | 2017-01-07 | 2008-11-15 | View | |
| 53101 | CVE-2007-0885 | Cross-site scripting (XSS) vulnerability in jira/secure/BrowseProject.jspa in Rainbow with the Zen (Rainbow.Zen) extension allows remote attackers to inject arbitrary web script or HTML via the id parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 2388 of 17672, showing 5 records out of 88360 total, starting on record 11936, ending on 11940