267161
|
- |
|
symantec
|
pcanywhere
|
Symantec pcAnywhere 11.5.x and 12.0.x retains unencrypted login credentials for the most recent login within process memory, which allows local administrators to obtain the credentials by reading pro…
|
NVD-CWE-Other
|
CVE-2007-2619
|
2017-07-29 10:31 |
2007-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267162
|
- |
|
aiocp
|
aiocp
|
Dynamic variable evaluation vulnerability in shared/config/cp_config.php in All In One Control Panel (AIOCP) before 1.3.016 allows remote attackers to conduct cross-site scripting (XSS) and possibly …
|
NVD-CWE-Other
|
CVE-2007-2624
|
2017-07-29 10:31 |
2007-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267163
|
- |
|
php_multi_user_randomizer
|
php_multi_user_randomizer
|
Multiple cross-site scripting (XSS) vulnerabilities in PHP Multi User Randomizer (phpMUR) 2006.09.13 allow remote attackers to inject arbitrary web script or HTML via (1) the edit_plugin parameter to…
|
NVD-CWE-Other
|
CVE-2007-2632
|
2017-07-29 10:31 |
2007-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267164
|
- |
|
positive_software
|
sitestudio
|
Directory traversal vulnerability in H-Sphere SiteStudio 1.6 allows remote attackers to read, or include and execute, arbitrary local files via a .. (dot dot) in the template parameter.
|
NVD-CWE-Other
|
CVE-2007-2633
|
2017-07-29 10:31 |
2007-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267165
|
- |
|
agner_fog
|
aforum
|
PHP remote file inclusion vulnerability in common/errormsg.php in aForum 1.32 and possibly earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL i…
|
NVD-CWE-Other
|
CVE-2007-2634
|
2017-07-29 10:31 |
2007-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267166
|
- |
|
agner_fog
|
aforum
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2007-2634
|
2017-07-29 10:31 |
2007-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267167
|
- |
|
jason_frisvold
|
phptodo
|
Unspecified vulnerability in phpTodo before 0.8.1 allows remote attackers to have an unknown impact via newlines in regular expressions to (1) index.php, (2) feed.php, (3) prefs.php, and (4) todolist…
|
NVD-CWE-Other
|
CVE-2007-2636
|
2017-07-29 10:31 |
2007-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267168
|
- |
|
moinmoin
|
moinmoin
|
MoinMoin before 20070507 does not properly enforce ACLs for calendars and includes, which allows remote attackers to read certain pages via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2007-2637
|
2017-07-29 10:31 |
2007-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267169
|
- |
|
heiko_stamer
|
libtmcg
|
LibTMCG before 1.1.1 does not perform a range check to avoid "trivial group generators," which allows attackers to obtain sensitive information about private cards.
|
NVD-CWE-Other
|
CVE-2007-2640
|
2017-07-29 10:31 |
2007-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267170
|
- |
|
clever_components
|
clever_database_comparer
|
Stack-based buffer overflow in the Clever Database Comparer 2.2 ActiveX control (comparerax.ocx) allows remote attackers to execute arbitrary code via a long argument to the ConnectToDatabase functio…
|
NVD-CWE-Other
|
CVE-2007-2648
|
2017-07-29 10:31 |
2007-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|