NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 53802 | CVE-2007-1618 | SQL injection vulnerability in index.php in ScriptMagix FAQ Builder 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the catid parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
| 54058 | CVE-2007-1888 | Buffer overflow in the sqlite_decode_binary function in src/encode.c in SQLite 2, as used by PHP 4.x through 5.x and other applications, allows context-dependent attackers to execute arbitrary code via an empty value of the in parameter. NOTE: some PHP installations use a bundled version of sqlite without this vulnerability. The SQLite developer has argued that this issue could be due to a misuse of the sqlite_decode_binary() API. | 2 | 7.5 | High | 2017-01-07 | 2012-11-05 | View | |
| 54826 | CVE-2007-2662 | SQL injection vulnerability in EfesTECH Haber 5.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to the top-level URI. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
| 55850 | CVE-2007-3701 | TippingPoint IPS before 20070710 does not properly handle a hex-encoded alternate Unicode "/" (slash) character, which might allow remote attackers to send certain network traffic and avoid detection, as demonstrated by a cmd.exe attack. | 2 | 7.5 | High | 2017-01-07 | 2016-07-20 | View | |
| 56874 | CVE-2007-4757 | PHP remote file inclusion vulnerability in menu.php in phpMytourney allows remote attackers to execute arbitrary PHP code via a URL in the functions_file parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View |
Page 2417 of 17672, showing 5 records out of 88360 total, starting on record 12081, ending on 12085