NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 53799 | CVE-2007-1615 | SQL injection vulnerability in index.php in ScriptMagix Jokes 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the catid parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
| 54055 | CVE-2007-1885 | Integer overflow in the str_replace function in PHP 4 before 4.4.5 and PHP 5 before 5.2.1 allows context-dependent attackers to execute arbitrary code via a single character search string in conjunction with a long replacement string, which overflows a 32 bit length counter. NOTE: this is probably the same issue as CVE-2007-0906.6. | 2 | 7.5 | High | 2017-01-07 | 2012-11-05 | View | |
| 54311 | CVE-2007-2141 | Direct static code injection vulnerability in shoutbox.php in ShoutPro 1.5.2 allows remote attackers to inject arbitrary PHP code into shouts.php via the shout parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
| 54567 | CVE-2007-2400 | Race condition in Apple Safari 3 Beta before 3.0.2 on Mac OS X, Windows XP, Windows Vista, and iPhone before 1.0.1, allows remote attackers to bypass the JavaScript security model and modify pages outside of the security domain and conduct cross-site scripting (XSS) attacks via vectors related to page updating and HTTP redirects. | 2 | 4.3 | Medium | 2017-01-07 | 2011-08-10 | View | |
| 54823 | CVE-2007-2659 | Directory traversal vulnerability in index.php in PHP Advanced Transfer Manager (phpATM) 1.30 allows remote attackers to read arbitrary files and obtain script source code via a .. (dot dot) in the directory parameter in a downloadfile action. | 2 | 5 | Medium | 2017-01-07 | 2012-10-30 | View |
Page 2398 of 17672, showing 5 records out of 88360 total, starting on record 11986, ending on 11990