NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
55307 | CVE-2007-3153 | The ares_init:randomize_key function in c-ares, on platforms other than Windows, uses a weak facility for producing a random number sequence (Unix rand), which makes it easier for remote attackers to spoof DNS responses by guessing certain values. | 2 | 5 | Medium | 2017-01-07 | 2012-10-30 | View | |
55819 | CVE-2007-3669 | Multiple unspecified vulnerabilities in the Innovasys DockStudioXP InnovaDSXP2.OCX ActiveX Control have unspecified attack vectors and impact, including a denial of service via "improper use" of the SaveToFile function. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
56075 | CVE-2007-3939 | SQL injection vulnerability in index.php in SpoonLabs Vivvo Article Management CMS (aka phpWordPress) CMS 3.4 and earlier allows remote attackers to execute arbitrary SQL commands via the category parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-15 | View | |
56331 | CVE-2007-4200 | ntfs.c in fsstat in Brian Carrier The Sleuth Kit (TSK) before 2.09 interprets a certain variable as a byte count rather than a count of 32-bit integers, which allows user-assisted remote attackers to cause a denial of service (application crash) and prevent examination of certain NTFS files via a malformed NTFS image. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
56843 | CVE-2007-4724 | Cross-site request forgery (CSRF) vulnerability in cal2.jsp in the calendar examples application in Apache Tomcat 4.1.31 allows remote attackers to add events as arbitrary users via the time and description parameters. | 2 | 4.3 | Medium | 2017-01-07 | 2009-02-05 | View |
Page 430 of 17672, showing 5 records out of 88360 total, starting on record 2146, ending on 2150