NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 58154 | CVE-2007-6147 | Multiple PHP remote file inclusion vulnerabilities in IAPR COMMENCE 1.3 allow remote attackers to execute arbitrary PHP code via a URL in the (a) php_root_path and sometimes the (b) privilege_root_path parameter to various PHP scripts under (1) admin/includes/, (2) admin/phase/, (3) includes/, (4) includes/page_includes/, (5) reviewer/includes/, (6) reviewer/phase/, and (7) user/phase/. | 2 | 6.8 | Medium | 2017-01-07 | 2008-09-05 | View | |
| 58410 | CVE-2007-6415 | scponly 4.6 and earlier allows remote authenticated users to bypass intended restrictions and execute arbitrary code by invoking scp, as implemented by OpenSSH, with the -F and -o options. | 2 | 8.5 | High | 2017-01-07 | 2008-09-05 | View | |
| 58666 | CVE-2007-6671 | SQL injection vulnerability in login_form.asp in Instant Softwares Dating Site allows remote attackers to execute arbitrary SQL commands via the Password parameter, a different product than CVE-2006-6021. NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
| 58922 | CVE-2006-0182 | login.php in ACal Calendar Project 2.2.5 allows remote attackers to bypass authentication by setting the ACalAuthenticate cookie variable to "inside". | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 59178 | CVE-2006-0440 | Text Rider 2.4 allows attackers to bypass authentication and upload files without providing a valid password by obtaining the MD5 hash of the password (possibly via another vulnerability that reads it from a data file), then including the hash in a cookie. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 2913 of 17672, showing 5 records out of 88360 total, starting on record 14561, ending on 14565