270831
|
- |
|
web-app.org
|
webapp
|
Multiple cross-site scripting (XSS) vulnerabilities in web-app.org WebAPP before 0.9.9.6 allow remote authenticated users to inject arbitrary web script or HTML via (1) the QUERY_STRING corresponding…
|
NVD-CWE-Other
|
CVE-2007-1828
|
2011-03-8 11:52 |
2007-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270832
|
- |
|
web-app.org
|
webapp
|
web-app.org WebAPP before 0.9.9.6 allows remote authenticated users to open files and write "wrong data" via a crafted QUERY_STRING.
|
NVD-CWE-Other
|
CVE-2007-1831
|
2011-03-8 11:52 |
2007-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270833
|
- |
|
web-app.org
|
webapp
|
web-app.org WebAPP before 0.9.9.6 allows remote authenticated users to upload certain files (1) via a crafted filename or (2) by "using percent encoding in forms."
|
NVD-CWE-Other
|
CVE-2007-1832
|
2011-03-8 11:52 |
2007-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270834
|
- |
|
mohachat
|
moha_chat
|
MOHA Chat 0.1b7 and earlier does not require authentication for use of the plug in API, which has unknown impact and attack vectors.
|
NVD-CWE-Other
|
CVE-2007-0954
|
2011-03-8 11:51 |
2007-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270835
|
- |
|
cisco
|
firewall_services_module
|
Unspecified vulnerability in Cisco Firewall Services Module (FWSM) 3.x before 3.1(3.3), when set to log at the "debug" level, allows remote attackers to cause a denial of service (device reboot) by s…
|
NVD-CWE-Other
|
CVE-2007-0963
|
2011-03-8 11:51 |
2007-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270836
|
- |
|
cisco
|
firewall_services_module
|
Cisco FWSM 3.x before 3.1(3.18), when authentication is configured to use "aaa authentication match" or "aaa authentication include", allows remote attackers to cause a denial of service (device rebo…
|
NVD-CWE-Other
|
CVE-2007-0964
|
2011-03-8 11:51 |
2007-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270837
|
- |
|
cisco
|
firewall_services_module
|
Cisco FWSM 3.x before 3.1(3.2), when authentication is configured to use "aaa authentication match" or "aaa authentication include", allows remote attackers to cause a denial of service (device reboo…
|
NVD-CWE-Other
|
CVE-2007-0965
|
2011-03-8 11:51 |
2007-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270838
|
- |
|
ian_bezanson
|
dropbox
|
Multiple unspecified vulnerabilities in Ian Bezanson DropBox before 0.0.4 beta have unknown impact and attack vectors, possibly related to a variable extraction vulnerability.
|
NVD-CWE-Other
|
CVE-2007-0974
|
2011-03-8 11:51 |
2007-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270839
|
- |
|
apache_stats
|
apache_stats
|
Variable extraction vulnerability in Ian Bezanson Apache Stats before 0.0.3 beta allows attackers to overwrite critical variables, with unknown impact, when the extract function is used on the _REQUE…
|
NVD-CWE-Other
|
CVE-2007-0975
|
2011-03-8 11:51 |
2007-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270840
|
- |
|
lifetype
|
lifetype
|
Unspecified vulnerability in LifeType before 1.1.6, and 1.2 before 1.2-beta2, allows remote attackers to obtain sensitive information (file contents) via a "crafted URL."
|
CWE-200
Information Exposure
|
CVE-2007-0979
|
2011-03-8 11:51 |
2007-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|