270451
|
- |
|
restaurant_management_system
|
restaurant_management_system
|
Multiple PHP remote file inclusion vulnerabilities in Thierry Leriche Restaurant Management System (ReMaSys) 0.5 allow remote attackers to execute arbitrary PHP code via a URL in (1) the DIR_ROOT par…
|
CWE-94
Code Injection
|
CVE-2007-5160
|
2008-09-6 06:30 |
2007-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270452
|
- |
|
phplister
|
phplister
|
PHP remote file inclusion vulnerability in .systeme/fonctions.php in phpLister 0.5-pre2 allows remote attackers to execute arbitrary PHP code via a URL in the nom_rep_systeme parameter.
|
CWE-94
Code Injection
|
CVE-2007-5167
|
2008-09-6 06:30 |
2007-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270453
|
- |
|
y\&k_iletisim_formu
|
y\&k_iletisim_formu
|
Multiple cross-site scripting (XSS) vulnerabilities in iletisim.asp in Y&K Iletisim Formu allow remote attackers to inject arbitrary web script or HTML via the (1) ad, (2) sehir, (3) yas, (4) cins, (…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5179
|
2008-09-6 06:30 |
2007-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270454
|
- |
|
dircproxy
|
dircproxy
|
irc_server.c in dircproxy 1.2.0 and earlier allows remote attackers to cause a denial of service (segmentation fault) via an ACTION command without a parameter, which triggers a NULL pointer derefere…
|
CWE-20
Improper Input Validation
|
CVE-2007-5226
|
2008-09-6 06:30 |
2007-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270455
|
- |
|
activepdf
|
server
|
Heap-based buffer overflow in the activePDF Server service (aka APServer.exe) in activePDF Server 3.8.4 and 3.8.5.14, and possibly other versions before 3.8.6.16, allows remote attackers to execute a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5397
|
2008-09-6 06:30 |
2008-02-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270456
|
- |
|
claroline
|
claroline
|
Cross-site scripting (XSS) vulnerability in admin/adminusers.php in Claroline before 1.8.6 allows remote authenticated administrators to inject arbitrary web script or HTML via the sort parameter. N…
|
CWE-79
Cross-site Scripting
|
CVE-2007-4741
|
2008-09-6 06:29 |
2007-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270457
|
- |
|
avnex
|
av_mp3_player
|
Avnex AV MP3 Player allows user-assisted remote attackers to cause a denial of service (application crash) via a malformed .au file that triggers a divide-by-zero error.
|
NVD-CWE-noinfo
|
CVE-2007-4885
|
2008-09-6 06:29 |
2007-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270458
|
- |
|
netinvoicing
|
netinvoicing
|
Unspecified vulnerability in netInvoicing before 2.7.3 has unknown impact and attack vectors, related to "security check soap".
|
NVD-CWE-noinfo
|
CVE-2007-4910
|
2008-09-6 06:29 |
2007-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270459
|
- |
|
invision_power_services
|
invision_power_board
|
ips_kernel/class_upload.php in Invision Power Board (IPB or IP.Board) 2.3.1 up to 20070912 allows remote attackers to upload arbitrary script files with crafted image filenames to uploads/, where the…
|
CWE-94
Code Injection
|
CVE-2007-4913
|
2008-09-6 06:29 |
2007-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270460
|
- |
|
office_efficiencies
|
safesquid
|
Unspecified vulnerability in Office Efficiencies SafeSquid 4.1.x has unknown impact and attack vectors, related to a "serious security flaw," possibly specific to Linux.
|
NVD-CWE-noinfo
|
CVE-2007-4936
|
2008-09-6 06:29 |
2007-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|