NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 63211 | CVE-2006-4578 | export.php in The Address Book 1.04e writes username and password hash information into a publicly accessible file when dumping the MySQL database contents, which allows remote attackers to obtain sensitive information. | 2 | 7.5 | High | 2016-12-20 | 2008-11-15 | View | |
| 55276 | CVE-2007-3122 | The parsing engine in ClamAV before 0.90.3 and 0.91 before 0.91rc1 allows remote attackers to bypass scanning via a RAR file with a header flag value of 10, which can be processed by WinRAR. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 56300 | CVE-2007-4169 | ** DISPUTED ** Multiple PHP remote file inclusion vulnerabilities in vgallite allow remote attackers to execute arbitrary PHP code via a URL in the (1) dirpath parameter to _functions.php or the (2) lang parameter to index.php. NOTE: CVE disputes vector 1 because the applicable include_once is located in a function that is not called on a direct request, and because $dirpath is an argument to this function. CVE disputes vector 2 because "lang" is a constant string within an include_once, not a variable. The researcher is also unreliable. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
| 56556 | CVE-2007-4431 | Cross-domain vulnerability in Apple Safari for Windows 3.0.3 and earlier allows remote attackers to bypass the Same Origin Policy, with access from local zones to external domains, via a certain body.innerHTML property value, aka "classic JavaScript frame hijacking." | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 58092 | CVE-2007-6083 | SQL injection vulnerability in admin/index.php in IceBB 1.0-rc6 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View |
Page 2529 of 17672, showing 5 records out of 88360 total, starting on record 12641, ending on 12645