NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 56532 | CVE-2007-4407 | ircu 2.10.12.03 and 2.10.12.04 does not associate a timestamp with ops privilege on an unused channel (zannel), which allows remote attackers to (1) set or remove certain channel modes via a "netriding" attack or (2) take over a channel by joining an unlinked server with the A/Upass and then setting a new Apass. | 2 | 6.4 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 58324 | CVE-2007-6329 | Microsoft Office 2007 12.0.6015.5000 and MSO 12.0.6017.5000 do not sign the metadata of Office Open XML (OOXML) documents, which makes it easier for remote attackers to modify Dublin Core metadata fields, as demonstrated by the (1) LastModifiedBy and (2) creator fields in docProps/core.xml in the OOXML ZIP container. | 2 | 6.4 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 56533 | CVE-2007-4408 | ircu 2.10.12.05 and earlier ignores timestamps in bounces, which allows remote attackers to take over a channel during a netjoin by causing a bounce while a server with an older version of the channel is linking. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 58325 | CVE-2007-6330 | Meridian Prolog Manager 2007, and 7.5 and earlier, sends all usernames and passwords to the client in a (1) cleartext or (2) weakly encrypted format to support client-side login authentication, which makes it easier for remote attackers to obtain database access by capturing credentials via a man-in-the-middle attack. | 2 | 10 | High | 2017-01-07 | 2008-11-15 | View | |
| 58581 | CVE-2007-6586 | SQL injection vulnerability in sezione_news.php in nicLOR-CMS allows remote attackers to execute arbitrary SQL commands via the id parameter in a sezione page action to index.php. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View |
Page 2509 of 17672, showing 5 records out of 88360 total, starting on record 12541, ending on 12545