NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
58154  CVE-2007-6147  Multiple PHP remote file inclusion vulnerabilities in IAPR COMMENCE 1.3 allow remote attackers to execute arbitrary PHP code via a URL in the (a) php_root_path and sometimes the (b) privilege_root_path parameter to various PHP scripts under (1) admin/includes/, (2) admin/phase/, (3) includes/, (4) includes/page_includes/, (5) reviewer/includes/, (6) reviewer/phase/, and (7) user/phase/.    6.8  Medium  2017-01-07  2008-09-05  View
58410  CVE-2007-6415  scponly 4.6 and earlier allows remote authenticated users to bypass intended restrictions and execute arbitrary code by invoking scp, as implemented by OpenSSH, with the -F and -o options.    8.5  High  2017-01-07  2008-09-05  View
58666  CVE-2007-6671  SQL injection vulnerability in login_form.asp in Instant Softwares Dating Site allows remote attackers to execute arbitrary SQL commands via the Password parameter, a different product than CVE-2006-6021. NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-07  2011-03-07  View
58922  CVE-2006-0182  login.php in ACal Calendar Project 2.2.5 allows remote attackers to bypass authentication by setting the ACalAuthenticate cookie variable to "inside".    7.5  High  2016-12-20  2011-03-07  View
59178  CVE-2006-0440  Text Rider 2.4 allows attackers to bypass authentication and upload files without providing a valid password by obtaining the MD5 hash of the password (possibly via another vulnerability that reads it from a data file), then including the hash in a cookie.    Medium  2016-12-20  2008-09-05  View

Page 2913 of 17672, showing 5 records out of 88360 total, starting on record 14561, ending on 14565

Actions