NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 56393 | CVE-2007-4264 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Kai Blankenhorn Bitfolge simple and nice index file (aka snif) 1.5.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) path and (2) download parameters. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57161 | CVE-2007-5078 | Multiple cross-site scripting (XSS) vulnerabilities in eGov Manager allow remote attackers to inject arbitrary web script or HTML via unspecified "user-supplied input" to (1) center.exe or (2) Index.exe. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 57417 | CVE-2007-5342 | The default catalina.policy in the JULI logging component in Apache Tomcat 5.5.9 through 5.5.25 and 6.0.0 through 6.0.15 does not restrict certain permissions for web applications, which allows attackers to modify logging configuration options and overwrite arbitrary files, as demonstrated by changing the (1) level, (2) directory, and (3) prefix attributes in the org.apache.juli.FileHandler handler. | 2 | 6.4 | Medium | 2017-01-07 | 2014-03-15 | View | |
| 57929 | CVE-2007-5904 | Multiple buffer overflows in CIFS VFS in Linux kernel 2.6.23 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long SMB responses that trigger the overflows in the SendReceive function. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View | |
| 58697 | CVE-2007-6702 | goform/QuickStart_c0 on the GoAhead Web Server on the FS4104-AW (aka rooter) VDSL device contains a password in the typepassword field, which allows remote attackers to obtain this password by reading the HTML source, a different vulnerability than CVE-2002-1603. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 2655 of 17672, showing 5 records out of 88360 total, starting on record 13271, ending on 13275