NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
53127  CVE-2007-0912  Cross-Site Request Forgery (CSRF) vulnerability in admin/admin.adm.php in Jportal 2.3.1, and possibly earlier, allows remote attackers to perform privileged actions as administrators by tricking the admin into accessing a URL with modified arguments to admin/admin.adm.php.    9.3  High  2017-01-07  2008-11-15  View
54919  CVE-2007-2755  The PrecisionID Barcode 1.9 ActiveX control in PrecisionID_Barcode.dll, when Internet Explorer 6 is used, allows remote attackers to overwrite arbitrary files via a full pathname to the SaveToFile function, a different vulnerability than CVE-2007-2744.    10  High  2017-01-07  2008-11-15  View
55175  CVE-2007-3018  activeWeb contentserver CMS before 5.6.2964 does not limit the file-creation ability of editors who have restricted accounts, which allows these editors to create files in arbitrary directories.    Medium  2017-01-07  2008-11-15  View
56199  CVE-2007-4068  Multiple SQL injection vulnerabilities in Webyapar 2.0 allow remote attackers to execute arbitrary SQL commands via (1) the kat_id parameter to the default URI in a download action or (2) the id parameter to the default URI in a duyurular_detay action.    5.8  Medium  2017-01-07  2008-11-15  View
56967  CVE-2007-4873  SimpNews 2.41.03 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download arbitrary .inc files via a direct request, as demonstrated by admin/includes/dbtables.inc.    Medium  2017-01-07  2008-11-15  View

Page 2413 of 17672, showing 5 records out of 88360 total, starting on record 12061, ending on 12065

Actions