NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
55051 | CVE-2007-2891 | Multiple PHP remote file inclusion vulnerabilities in FirmWorX 0.1.2 allow remote attackers to execute arbitrary PHP code via a URL in the (1) bank_data[root] parameter to modules/bank/includes/design/main.inc.php, or the (2) fm_data[root] parameter to (a) includes/config/master.inc.php or (b) includes/functions/master.inc.php. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
55307 | CVE-2007-3153 | The ares_init:randomize_key function in c-ares, on platforms other than Windows, uses a weak facility for producing a random number sequence (Unix rand), which makes it easier for remote attackers to spoof DNS responses by guessing certain values. | 2 | 5 | Medium | 2017-01-07 | 2012-10-30 | View | |
55563 | CVE-2007-3411 | SQL injection vulnerability in edit_image.asp in ClickGallery Server 5.1 and earlier allows remote attackers to execute arbitrary SQL commands via the image_id parameter. | 2 | 7.5 | High | 2017-01-07 | 2008-11-15 | View | |
55819 | CVE-2007-3669 | Multiple unspecified vulnerabilities in the Innovasys DockStudioXP InnovaDSXP2.OCX ActiveX Control have unspecified attack vectors and impact, including a denial of service via "improper use" of the SaveToFile function. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
56075 | CVE-2007-3939 | SQL injection vulnerability in index.php in SpoonLabs Vivvo Article Management CMS (aka phpWordPress) CMS 3.4 and earlier allows remote attackers to execute arbitrary SQL commands via the category parameter. | 2 | 6.8 | Medium | 2017-01-07 | 2008-11-15 | View |
Page 711 of 17672, showing 5 records out of 88360 total, starting on record 3551, ending on 3555