NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
56617  CVE-2007-4494  The tipafriend function in eZ publish before 3.8.9, and 3.9 before 3.9.3, does not limit access by anonymous users, which allows remote attackers to conduct spam attacks.    Medium  2017-01-07  2015-07-27  View
56873  CVE-2007-4756  Directory traversal vulnerability in the FTP client in Total Commander before 7.02 allows remote FTP servers to create or overwrite arbitrary files via ".." (dot dot backslash) sequences in a filename. NOTE: the ".." are not displayed when the user lists files. NOTE: this can be leveraged for code execution by writing to a Startup folder.    6.8  Medium  2017-01-07  2011-03-07  View
57129  CVE-2007-5041  G DATA InternetSecurity 2007 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via the (1) NtCreateKey and (2) NtOpenProcess kernel SSDT hooks.    4.6  Medium  2017-01-07  2008-11-15  View
57385  CVE-2007-5309  PHP remote file inclusion vulnerability in admin.wmtgallery.php in the webmaster-tips.net Flash Image Gallery (com_wmtgallery) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.    6.8  Medium  2017-01-07  2011-03-07  View
57641  CVE-2007-5576  BEA Tuxedo 8.0 before RP392 and 8.1 before RP293, and WebLogic Enterprise 5.1 before RP174, echo the password in cleartext, which allows physically proximate attackers to obtain sensitive information via the (1) cnsbind, (2) cnsunbind, or (3) cnsls commands.    6.8  Medium  2017-01-07  2011-03-07  View

Page 3195 of 17672, showing 5 records out of 88360 total, starting on record 15971, ending on 15975

Actions