NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
56339  CVE-2007-4208  SQL injection vulnerability in default.asp in Next Gen Portfolio Manager allows remote attackers to execute arbitrary SQL commands via the (1) Users_Email or (2) Users_Password parameter in an ExecuteTheLogin action.    7.5  High  2017-01-07  2011-03-07  View
56595  CVE-2007-4472  Multiple buffer overflows in the Broderbund Expressit 3DGreetings Player ActiveX control could allow remote attackers to execute arbitrary code via unspecified vectors.    9.3  High  2017-01-07  2011-03-07  View
57107  CVE-2007-5019  Buffer overflow in the Sun Java Web Start ActiveX control in Java Runtime Environment (JRE) 1.6.0_X allows remote attackers to have an unknown impact via a long argument to the dnsResolve (isInstalled.dnsResolve) method.    10  High  2017-01-07  2008-11-15  View
57619  CVE-2007-5554  Oracle allows remote attackers to obtain server memory contents via crafted packets, aka Oracle reference number 7892711. NOTE: as of 20071016, the only disclosure is a vague pre-advisory with no actionable information. However, since it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes.    7.1  High  2017-01-07  2008-09-05  View
57875  CVE-2007-5824  webserver.c in mt-dappd in Firefly Media Server 0.2.4 and earlier allows remote attackers to cause a denial of service (NULL dereference and daemon crash) via a stats method action to /xml-rpc with (1) an empty Authorization header line, which triggers a crash in the ws_decodepassword function; or (2) a header line without a ":" character, which triggers a crash in the ws_getheaders function.    7.1  High  2017-01-07  2008-09-10  View

Page 885 of 17672, showing 5 records out of 88360 total, starting on record 4421, ending on 4425

Actions