NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 55612 | CVE-2007-3460 | Multiple PHP remote file inclusion vulnerabilities in index.php3 in EVA-Web 1.1 through 2.2 allow remote attackers to execute arbitrary PHP code via a URL in the (1) aide or (2) perso parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
| 58172 | CVE-2007-6169 | SQL injection vulnerability in admin/index2.asp in GOUAE DWD Realty allows remote attackers to execute arbitrary SQL commands via the uname parameter, a different vector than CVE-2007-6163. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
| 58428 | CVE-2007-6433 | The getRenderedEjbql method in the org.jboss.seam.framework.Query class in JBoss Seam 2.x before 2.0.0.CR3 allows remote attackers to inject and execute arbitrary EJBQL commands via the order parameter. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
| 58684 | CVE-2007-6689 | Menalto Gallery before 2.2.4 does not properly check for malicious file extensions during file uploads, which allows attackers to execute arbitrary code via the (1) Core application or (2) MIME module. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
| 59452 | CVE-2006-0721 | SQL injection vulnerability in pmlite.php in RunCMS 1.2 and 1.3a allows remote attackers to execute arbitrary SQL commands via the to_userid parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 2622 of 17672, showing 5 records out of 88360 total, starting on record 13106, ending on 13110