266721
|
- |
|
innovaage
|
innovashop
|
Multiple cross-site scripting (XSS) vulnerabilities in InnovaAge InnovaShop allow remote attackers to inject arbitrary web script or HTML via the (1) msg parameter to msg.jsp, and the (2) contentid p…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5480
|
2017-07-29 10:33 |
2007-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266722
|
- |
|
distributed_checksum_clearinghouse
|
dcc
|
Distributed Checksum Clearinghouse (DCC) 1.3.65 allows remote attackers to cause a denial of service (crash) via a "SOCKS flood."
|
NVD-CWE-Other
|
CVE-2007-5481
|
2017-07-29 10:33 |
2007-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266723
|
- |
|
sun
|
storagetek_3510 storedge
|
Unspecified vulnerability in the FTP service in Sun StorEdge/StorageTek 3510 FC Array with firmware before 4.21 allows remote attackers, with access to the Ethernet management interface, to cause a d…
|
NVD-CWE-noinfo
|
CVE-2007-5482
|
2017-07-29 10:33 |
2007-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266724
|
- |
|
ibm
|
websphere_application_server
|
Unspecified vulnerability in the Administrative Scripting Tools (such as wsadmin or ANT) in IBM WebSphere Application Server 5.x and 6.0.x has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2007-5483
|
2017-07-29 10:33 |
2007-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266725
|
- |
|
dotproject
|
dotproject
|
dotProject before 2.1 does not properly check privileges when invoking the Companies module, which allows remote attackers to access this module via a crafted URL. NOTE: some of these details are ob…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-5486
|
2017-07-29 10:33 |
2007-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266726
|
- |
|
asterisk
|
asterisk-addons
|
Multiple SQL injection vulnerabilities in cdr_addon_mysql in Asterisk-Addons before 1.2.8, and 1.4.x before 1.4.4, allow remote attackers to execute arbitrary SQL commands via the (1) source and (2) …
|
CWE-89
SQL Injection
|
CVE-2007-5488
|
2017-07-29 10:33 |
2007-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266727
|
- |
|
openssl
|
fips_object_module
|
The PRNG implementation for the OpenSSL FIPS Object Module 1.1.1 does not perform auto-seeding during the FIPS self-test, which generates random data that is more predictable than expected and makes …
|
CWE-310
Cryptographic Issues
|
CVE-2007-5502
|
2017-07-29 10:33 |
2007-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266728
|
- |
|
runcms
|
runcms
|
Unspecified vulnerability in newbb_plus in RunCms 1.5.2 has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2007-5535
|
2017-07-29 10:33 |
2007-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266729
|
- |
|
cisco
|
unified_callmanager unified_communications_manager
|
Cisco Unified Communications Manager (CUCM, formerly CallManager) 5.1 before 5.1(2), and Unified CallManager 5.0, allow remote attackers to cause a denial of service (kernel panic) via a flood of SIP…
|
CWE-399
Resource Management Errors
|
CVE-2007-5537
|
2017-07-29 10:33 |
2007-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266730
|
- |
|
cisco
|
unified_callmanager unified_communications_manager
|
Buffer overflow in the Centralized TFTP File Locator Service in Cisco Unified Communications Manager (CUCM, formerly CallManager) 5.1 before 5.1(3), and Unified CallManager 5.0, allows remote attacke…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5538
|
2017-07-29 10:33 |
2007-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|