269821
|
- |
|
david_hansson
|
ruby_on_rails
|
Rails before 1.2.4, as used for Ruby on Rails, allows remote attackers and ActiveResource servers to determine the existence of arbitrary files and read arbitrary XML files via the Hash.from_xml (Has…
|
CWE-200
Information Exposure
|
CVE-2007-5379
|
2012-10-31 11:44 |
2007-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269822
|
- |
|
ibm
|
websphere_application_server
|
Unspecified vulnerability in the PD tools component in IBM WebSphere Application Server (WAS) 6.1 before Fix Pack 11 (6.1.0.11) has unknown impact and attack vectors, aka PK33803.
|
NVD-CWE-noinfo
|
CVE-2007-4839
|
2012-10-31 11:43 |
2007-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269823
|
- |
|
fail2ban
|
fail2ban
|
fail2ban 0.8 and earlier does not properly parse sshd log files, which allows remote attackers to add arbitrary hosts to the /etc/hosts.deny file and cause a denial of service by adding arbitrary IP …
|
NVD-CWE-Other
|
CVE-2007-4321
|
2012-10-31 11:41 |
2007-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269824
|
- |
|
ac_zoom
|
blockhosts
|
BlockHosts before 2.0.4 does not properly parse (1) sshd and (2) vsftpd log files, which allows remote attackers to add arbitrary deny entries to the /etc/hosts.allow file and cause a denial of servi…
|
NVD-CWE-Other
|
CVE-2007-4322
|
2012-10-31 11:41 |
2007-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269825
|
- |
|
8e6
|
r3000_enterprise_filter
|
Cross-site scripting (XSS) vulnerability in the 8e6 R3000 Enterprise Filter before 2.0.05 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: this may be th…
|
NVD-CWE-Other
|
CVE-2007-3842
|
2012-10-31 11:40 |
2007-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269826
|
- |
|
firebirdsql
|
firebird
|
Integer overflow in Firebird 2.0.0 allows remote authenticated users to cause a denial of service (CPU consumption) via certain database operations with multi-byte character sets that trigger an atte…
|
NVD-CWE-Other
|
CVE-2007-3527
|
2012-10-31 11:39 |
2007-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269827
|
- |
|
warzone
|
warzone_2100_resurrection
|
Buffer overflow in Warzone 2100 Resurrection before 2.0.7 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a long filename when setting backgroun…
|
NVD-CWE-Other
|
CVE-2007-3545
|
2012-10-31 11:39 |
2007-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269828
|
- |
|
maia_mailguard
|
maia_mailguard
|
Multiple directory traversal vulnerabilities in Maia Mailguard 1.0.2 and earlier might allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) prevlang and (2) super parameters t…
|
NVD-CWE-Other
|
CVE-2007-3620
|
2012-10-31 11:39 |
2007-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269829
|
- |
|
maia_mailguard
|
maia_mailguard
|
Successful exploitation requires that "magic_quotes_gpc" is disabled.
|
NVD-CWE-Other
|
CVE-2007-3620
|
2012-10-31 11:39 |
2007-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269830
|
- |
|
media_player_classic
|
media_player_classic
|
Divide-by-zero error in Media Player Classic (MPC) 6.4.9.0 allows user-assisted remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted MPA file.
|
NVD-CWE-Other
|
CVE-2007-3663
|
2012-10-31 11:39 |
2007-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|