NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
55337  CVE-2007-3183  Multiple SQL injection vulnerabilities in Calendarix 0.7.20070307, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) month and (2) year parameters to calendar.php and the (3) search string to cal_search.php.    6.8  Medium  2017-01-07  2012-10-30  View
55593  CVE-2007-3441  Format string vulnerability in the Aastra 9112i SIP Phone with firmware 1.4.0.1048 and boot version 1.1.0.10 allows remote attackers to cause a denial of service (blocked call reception and slow calling) via format string specifiers in an SDP header value, a different vulnerability than CVE-2007-3349.    Medium  2017-01-07  2008-11-15  View
55849  CVE-2007-3700  Sun Java System Access Manager (formerly Java System Identity Server) before 20070710, when the message debug level is configured in the com.iplanet.services.debug.level property in AMConfig.properties, logs cleartext login passwords, which allows local users to gain privileges by reading /var/opt/SUNWam/debug/amAuth.    1.7  Low  2017-01-07  2011-03-07  View
56105  CVE-2007-3969  Buffer overflow in Panda Antivirus before 20070720 allows remote attackers to execute arbitrary code via a crafted EXE file, resulting from an "Integer Cast Around."    9.3  High  2017-01-07  2008-09-10  View
56361  CVE-2007-4232  PHP remote file inclusion vulnerability in admin/inc/change_action.php in Andreas Robertz PHPNews 0.93 allows remote attackers to execute arbitrary PHP code via a URL in the format_menue parameter.    6.8  Medium  2017-01-07  2011-03-07  View

Page 3194 of 17672, showing 5 records out of 88360 total, starting on record 15966, ending on 15970

Actions