NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 55337 | CVE-2007-3183 | Multiple SQL injection vulnerabilities in Calendarix 0.7.20070307, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) month and (2) year parameters to calendar.php and the (3) search string to cal_search.php. | 2 | 6.8 | Medium | 2017-01-07 | 2012-10-30 | View | |
| 55593 | CVE-2007-3441 | Format string vulnerability in the Aastra 9112i SIP Phone with firmware 1.4.0.1048 and boot version 1.1.0.10 allows remote attackers to cause a denial of service (blocked call reception and slow calling) via format string specifiers in an SDP header value, a different vulnerability than CVE-2007-3349. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 55849 | CVE-2007-3700 | Sun Java System Access Manager (formerly Java System Identity Server) before 20070710, when the message debug level is configured in the com.iplanet.services.debug.level property in AMConfig.properties, logs cleartext login passwords, which allows local users to gain privileges by reading /var/opt/SUNWam/debug/amAuth. | 2 | 1.7 | Low | 2017-01-07 | 2011-03-07 | View | |
| 56105 | CVE-2007-3969 | Buffer overflow in Panda Antivirus before 20070720 allows remote attackers to execute arbitrary code via a crafted EXE file, resulting from an "Integer Cast Around." | 2 | 9.3 | High | 2017-01-07 | 2008-09-10 | View | |
| 56361 | CVE-2007-4232 | PHP remote file inclusion vulnerability in admin/inc/change_action.php in Andreas Robertz PHPNews 0.93 allows remote attackers to execute arbitrary PHP code via a URL in the format_menue parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2011-03-07 | View |
Page 3194 of 17672, showing 5 records out of 88360 total, starting on record 15966, ending on 15970