270171
|
- |
|
php
|
php
|
Buffer underflow in the PHP_FILTER_TRIM_DEFAULT macro in the filtering extension (ext/filter) in PHP 5.2.0 allows context-dependent attackers to execute arbitrary code by calling filter_var with cert…
|
NVD-CWE-Other
|
CVE-2007-1453
|
2008-09-6 06:20 |
2007-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270172
|
- |
|
php
|
php
|
ext/filter in PHP 5.2.0, when FILTER_SANITIZE_STRING is used with the FILTER_FLAG_STRIP_LOW flag, does not properly strip HTML tags, which allows remote attackers to conduct cross-site scripting (XSS…
|
NVD-CWE-Other
|
CVE-2007-1454
|
2008-09-6 06:20 |
2007-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270173
|
- |
|
avaya
|
communication_manager
|
Unspecified maintenance web pages in Avaya S87XX, S8500, and S8300 before CM 3.1.3, and Avaya SES allow remote authenticated users to execute arbitrary commands via shell metacharacters in unspecifie…
|
NVD-CWE-Other
|
CVE-2007-1490
|
2008-09-6 06:20 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270174
|
- |
|
avaya
|
sip_enablement_services s8300 s8500 s8700
|
Apache Tomcat in Avaya S87XX, S8500, and S8300 before CM 3.1.3, and Avaya SES allows connections from external interfaces via port 8009, which exposes it to attacks from outside parties.
|
NVD-CWE-Other
|
CVE-2007-1491
|
2008-09-6 06:20 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270175
|
- |
|
kde
|
konqueror
|
Konqueror 3.5.5 allows remote attackers to cause a denial of service (crash) by using JavaScript to read a child iframe having an ftp:// URI.
|
NVD-CWE-Other
|
CVE-2007-1565
|
2008-09-6 06:20 |
2007-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270176
|
- |
|
realguestbook
|
realguestbook
|
Multiple cross-site scripting (XSS) vulnerabilities in realGuestbook 5.01, when register_globals is enabled, allow remote attackers to inject arbitrary web script or HTML via the (1) bg_color_1, (2) …
|
NVD-CWE-Other
|
CVE-2007-1623
|
2008-09-6 06:20 |
2007-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270177
|
- |
|
linux
|
linux_kernel
|
Race condition in the tee (sys_tee) system call in the Linux kernel 2.6.17 through 2.6.17.6 might allow local users to cause a denial of service (system crash), obtain sensitive information (kernel m…
|
CWE-362
Race Condition
|
CVE-2007-0997
|
2008-09-6 06:19 |
2007-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270178
|
- |
|
trend_micro
|
serverprotect
|
The web interface in Trend Micro ServerProtect for Linux (SPLX) 1.25, 1.3, and 2.5 before 20070216 accepts logon requests through unencrypted HTTP, which might allow remote attackers to obtain creden…
|
NVD-CWE-Other
|
CVE-2007-1169
|
2008-09-6 06:19 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270179
|
- |
|
apple
|
ichat instant_message_framework mdnsresponder
|
The Bonjour functionality in mDNSResponder, iChat 3.1.6, and InstantMessage framework 428 in Apple Mac OS X 10.4.8 does not check for duplicate entries when adding newly discovered available contacts…
|
NVD-CWE-Other
|
CVE-2007-0613
|
2008-09-6 06:18 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270180
|
- |
|
apple
|
ichat instant_message_framework mac_os_x
|
The Bonjour functionality in mDNSResponder, iChat 3.1.6, and InstantMessage framework 428 in Apple Mac OS X 10.4.8 allows remote attackers to cause a denial of service (persistent application crash) …
|
NVD-CWE-Other
|
CVE-2007-0614
|
2008-09-6 06:18 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|