267191
|
- |
|
zoph
|
zoph
|
SQL injection vulnerability in Zoph before 0.7.0.1 might allow remote attackers to execute arbitrary SQL commands via the _order parameter to (1) photos.php and (2) edit_photos.php.
|
NVD-CWE-Other
|
CVE-2007-3905
|
2017-07-29 10:32 |
2007-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267192
|
- |
|
kaspersky_lab
|
kaspersky_anti-virus_5.5_for_check_point_firewall-
|
Unspecified vulnerability in Kaspersky Anti-Virus for Check Point FireWall-1 before Critical Fix 1 (5.5.161.0) might allow attackers to cause a denial of service (kernel hang) via unspecified vectors…
|
NVD-CWE-Other
|
CVE-2007-3906
|
2017-07-29 10:32 |
2007-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267193
|
- |
|
bandersnatch
|
bandersnatch
|
Multiple SQL injection vulnerabilities in Bandersnatch 0.4 allow remote attackers to execute arbitrary SQL commands via the (1) date and (2) limit parameters to index.php, and other unspecified vecto…
|
CWE-89
SQL Injection
|
CVE-2007-3909
|
2017-07-29 10:32 |
2007-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267194
|
- |
|
bandersnatch
|
bandersnatch
|
Cross-site scripting (XSS) vulnerability in Bandersnatch 0.4 allows remote attackers to inject arbitrary JavaScript via a Jabber resource name and possibly other data items, which are stored in conve…
|
CWE-79
Cross-site Scripting
|
CVE-2007-3910
|
2017-07-29 10:32 |
2007-07-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267195
|
- |
|
debian
|
debian-goodies
|
checkrestart in debian-goodies before 0.34 allows local users to gain privileges via shell metacharacters in the name of the executable file for a running process.
|
CWE-264 CWE-20
Permissions, Privileges, and Access Controls Improper Input Validation
|
CVE-2007-3912
|
2017-07-29 10:32 |
2007-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267196
|
- |
|
gforge
|
gforge
|
SQL injection vulnerability in Gforge before 3.1 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89 CWE-20
SQL Injection Improper Input Validation
|
CVE-2007-3913
|
2017-07-29 10:32 |
2007-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267197
|
- |
|
gforge
|
gforge
|
The following link provides information on the vulnerability: http://www.linuxcompatible.org/DSA_1369-1_New_gforge_packages_fix_SQL_injection_p95749.html
|
CWE-89 CWE-20
SQL Injection Improper Input Validation
|
CVE-2007-3913
|
2017-07-29 10:32 |
2007-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267198
|
- |
|
skk_openlab
|
skk_tools
|
The main function in skkdic-expr.c in SKK Tools 1.2 allows local users to overwrite or delete arbitrary files via a symlink attack on a skkdic$PID temporary file.
|
CWE-59
Link Following
|
CVE-2007-3916
|
2017-07-29 10:32 |
2007-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267199
|
- |
|
wesnoth
|
wesnoth
|
The multiplayer engine in Wesnoth 1.2.x before 1.2.7 and 1.3.x before 1.3.9 allows remote servers to cause a denial of service (crash) via a long message with multibyte characters that can produce an…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2007-3917
|
2017-07-29 10:32 |
2007-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267200
|
- |
|
gforge
|
gforge
|
gforge 3.1 and 4.5.14 allows local users to truncate arbitrary files via a symlink attack on temporary files.
|
CWE-59
Link Following
|
CVE-2007-3921
|
2017-07-29 10:32 |
2007-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|