NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
52321  CVE-2007-0089  jgbbs stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for db/bbs.mdb.    7.5  High  2017-01-07  2008-11-15  View
52577  CVE-2007-0350  Multiple SQL injection vulnerabilities in (a) index.php and (b) dl.php in SmE FileMailer 1.21 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) ps, (2) us, (3) f, or (4) code parameter. NOTE: the us vector in index.php is already covered by CVE-2007-0346.    7.5  High  2017-01-07  2011-09-08  View
53089  CVE-2007-0873  nabopoll 1.1.2 allows remote attackers to bypass authentication and access certain administrative functionality via a direct request for (1) config_edit.php, (2) template_edit.php, or (3) survey_edit.php in admin/.    7.5  High  2017-01-07  2011-03-07  View
53601  CVE-2007-1417  SQL injection vulnerability in index.php in HC NEWSSYSTEM 1.0-4 allows remote attackers to execute arbitrary SQL commands via the ID parameter in a komm aktion.    7.5  High  2017-01-07  2011-03-07  View
54625  CVE-2007-2458  Multiple PHP remote file inclusion vulnerabilities in Pixaria Gallery before 1.4.3 allow remote attackers to execute arbitrary PHP code via a URL in the cfg[sys][base_path] parameter to psg.smarty.lib.php and certain include and library scripts, a different vector than CVE-2007-2457.    7.5  High  2017-01-07  2011-09-08  View

Page 3047 of 17672, showing 5 records out of 88360 total, starting on record 15231, ending on 15235

Actions