NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
54791 | CVE-2007-2627 | Cross-site scripting (XSS) vulnerability in sidebar.php in WordPress, when custom 404 pages that call get_sidebar are used, allows remote attackers to inject arbitrary web script or HTML via the query string (PHP_SELF), a different vulnerability than CVE-2007-1622. | 2 | 6.8 | Medium | 2017-01-07 | 2012-10-30 | View | |
55047 | CVE-2007-2887 | Cross-site scripting (XSS) vulnerability in index.php in Web Icerik Yonetim Sistemi (WIYS) 1.0 allows remote attackers to inject arbitrary web script or HTML via the No parameter in the Sayfa page. | 2 | 4.3 | Medium | 2017-01-07 | 2012-10-30 | View | |
55303 | CVE-2007-3149 | sudo, when linked with MIT Kerberos 5 (krb5), does not properly check whether a user can currently authenticate to Kerberos, which allows local users to gain privileges, in a manner unintended by the sudo security model, via certain KRB5_ environment variable settings. NOTE: another researcher disputes this vulnerability, stating that the attacker must be "a user, who can already log into your system, and can already use sudo." | 2 | 7.2 | High | 2017-01-07 | 2008-09-05 | View | |
55559 | CVE-2007-3407 | Sergey Lyubka Simple HTTPD (shttpd) 1.38 allows remote attackers to obtain sensitive information (script source code) via a URL with a trailing encoded space (%20). | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View | |
55815 | CVE-2007-3665 | Multiple unspecified vulnerabilities in FileBackup.DLL in Symantec Norton Ghost 12.0 allow remote attackers to cause a denial of service via unspecified vectors involving the UpdateCatalog and other functions. | 2 | 5 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 536 of 17672, showing 5 records out of 88360 total, starting on record 2676, ending on 2680