NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
53438  CVE-2007-1235  Unrestricted file upload vulnerability in sitex allows remote attackers to upload arbitrary PHP code via an avatar filename with a double extension such as .php.jpg, which fails verification and is saved as a .php file.    7.5  High  2017-01-07  2009-03-12  View
53440  CVE-2007-1237  sitex allows remote attackers to obtain potentially sensitive information via a " (quote) value for certain parameters, as demonstrated by parameters used in forum and search, which forces a SQL error.    Medium  2017-01-07  2009-03-12  View
53441  CVE-2007-1238  Microsoft Office 2003 allows user-assisted remote attackers to cause a denial of service (application crash) by attempting to insert a corrupted WMF file.    4.3  Medium  2017-01-07  2009-03-12  View
53443  CVE-2007-1240  Multiple cross-site scripting (XSS) vulnerabilities in Docebo CMS 3.0.3 through 3.0.5 allow remote attackers to inject arbitrary web script or HTML via (1) the searchkey parameter to index.php, or the (2) sn or (3) ri parameter to modules/htmlframechat/index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    4.3  Medium  2017-01-07  2009-03-12  View
47642  CVE-2009-0310  Buffer overflow in SUSE blinux (aka sbl) in SUSE openSUSE 10.3 through 11.0 has unknown impact and attack vectors related to "incoming data and authentication-strings."    7.2  High  2017-01-07  2009-03-13  View

Page 2844 of 17672, showing 5 records out of 88360 total, starting on record 14216, ending on 14220

Actions