NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 54791 | CVE-2007-2627 | Cross-site scripting (XSS) vulnerability in sidebar.php in WordPress, when custom 404 pages that call get_sidebar are used, allows remote attackers to inject arbitrary web script or HTML via the query string (PHP_SELF), a different vulnerability than CVE-2007-1622. | 2 | 6.8 | Medium | 2017-01-07 | 2012-10-30 | View | |
| 55047 | CVE-2007-2887 | Cross-site scripting (XSS) vulnerability in index.php in Web Icerik Yonetim Sistemi (WIYS) 1.0 allows remote attackers to inject arbitrary web script or HTML via the No parameter in the Sayfa page. | 2 | 4.3 | Medium | 2017-01-07 | 2012-10-30 | View | |
| 55303 | CVE-2007-3149 | sudo, when linked with MIT Kerberos 5 (krb5), does not properly check whether a user can currently authenticate to Kerberos, which allows local users to gain privileges, in a manner unintended by the sudo security model, via certain KRB5_ environment variable settings. NOTE: another researcher disputes this vulnerability, stating that the attacker must be "a user, who can already log into your system, and can already use sudo." | 2 | 7.2 | High | 2017-01-07 | 2008-09-05 | View | |
| 55559 | CVE-2007-3407 | Sergey Lyubka Simple HTTPD (shttpd) 1.38 allows remote attackers to obtain sensitive information (script source code) via a URL with a trailing encoded space (%20). | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 55815 | CVE-2007-3665 | Multiple unspecified vulnerabilities in FileBackup.DLL in Symantec Norton Ghost 12.0 allow remote attackers to cause a denial of service via unspecified vectors involving the UpdateCatalog and other functions. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 2676 of 17672, showing 5 records out of 88360 total, starting on record 13376, ending on 13380