NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 53127 | CVE-2007-0912 | Cross-Site Request Forgery (CSRF) vulnerability in admin/admin.adm.php in Jportal 2.3.1, and possibly earlier, allows remote attackers to perform privileged actions as administrators by tricking the admin into accessing a URL with modified arguments to admin/admin.adm.php. | 2 | 9.3 | High | 2017-01-07 | 2008-11-15 | View | |
| 54919 | CVE-2007-2755 | The PrecisionID Barcode 1.9 ActiveX control in PrecisionID_Barcode.dll, when Internet Explorer 6 is used, allows remote attackers to overwrite arbitrary files via a full pathname to the SaveToFile function, a different vulnerability than CVE-2007-2744. | 2 | 10 | High | 2017-01-07 | 2008-11-15 | View | |
| 55175 | CVE-2007-3018 | activeWeb contentserver CMS before 5.6.2964 does not limit the file-creation ability of editors who have restricted accounts, which allows these editors to create files in arbitrary directories. | 2 | 4 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 56199 | CVE-2007-4068 | Multiple SQL injection vulnerabilities in Webyapar 2.0 allow remote attackers to execute arbitrary SQL commands via (1) the kat_id parameter to the default URI in a download action or (2) the id parameter to the default URI in a duyurular_detay action. | 2 | 5.8 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 56967 | CVE-2007-4873 | SimpNews 2.41.03 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download arbitrary .inc files via a direct request, as demonstrated by admin/includes/dbtables.inc. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 2413 of 17672, showing 5 records out of 88360 total, starting on record 12061, ending on 12065