NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
56339 | CVE-2007-4208 | SQL injection vulnerability in default.asp in Next Gen Portfolio Manager allows remote attackers to execute arbitrary SQL commands via the (1) Users_Email or (2) Users_Password parameter in an ExecuteTheLogin action. | 2 | 7.5 | High | 2017-01-07 | 2011-03-07 | View | |
56595 | CVE-2007-4472 | Multiple buffer overflows in the Broderbund Expressit 3DGreetings Player ActiveX control could allow remote attackers to execute arbitrary code via unspecified vectors. | 2 | 9.3 | High | 2017-01-07 | 2011-03-07 | View | |
57107 | CVE-2007-5019 | Buffer overflow in the Sun Java Web Start ActiveX control in Java Runtime Environment (JRE) 1.6.0_X allows remote attackers to have an unknown impact via a long argument to the dnsResolve (isInstalled.dnsResolve) method. | 2 | 10 | High | 2017-01-07 | 2008-11-15 | View | |
57619 | CVE-2007-5554 | Oracle allows remote attackers to obtain server memory contents via crafted packets, aka Oracle reference number 7892711. NOTE: as of 20071016, the only disclosure is a vague pre-advisory with no actionable information. However, since it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes. | 2 | 7.1 | High | 2017-01-07 | 2008-09-05 | View | |
57875 | CVE-2007-5824 | webserver.c in mt-dappd in Firefly Media Server 0.2.4 and earlier allows remote attackers to cause a denial of service (NULL dereference and daemon crash) via a stats method action to /xml-rpc with (1) an empty Authorization header line, which triggers a crash in the ws_decodepassword function; or (2) a header line without a ":" character, which triggers a crash in the ws_getheaders function. | 2 | 7.1 | High | 2017-01-07 | 2008-09-10 | View |
Page 885 of 17672, showing 5 records out of 88360 total, starting on record 4421, ending on 4425