267811
|
- |
|
phplister
|
phplister
|
PHP remote file inclusion vulnerability in .systeme/fonctions.php in phpLister 0.5-pre2 allows remote attackers to execute arbitrary PHP code via a URL in the nom_rep_systeme parameter.
|
CWE-94
Code Injection
|
CVE-2007-5167
|
2008-09-6 06:30 |
2007-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267812
|
- |
|
y\&k_iletisim_formu
|
y\&k_iletisim_formu
|
Multiple cross-site scripting (XSS) vulnerabilities in iletisim.asp in Y&K Iletisim Formu allow remote attackers to inject arbitrary web script or HTML via the (1) ad, (2) sehir, (3) yas, (4) cins, (…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5179
|
2008-09-6 06:30 |
2007-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267813
|
- |
|
dircproxy
|
dircproxy
|
irc_server.c in dircproxy 1.2.0 and earlier allows remote attackers to cause a denial of service (segmentation fault) via an ACTION command without a parameter, which triggers a NULL pointer derefere…
|
CWE-20
Improper Input Validation
|
CVE-2007-5226
|
2008-09-6 06:30 |
2007-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267814
|
- |
|
activepdf
|
server
|
Heap-based buffer overflow in the activePDF Server service (aka APServer.exe) in activePDF Server 3.8.4 and 3.8.5.14, and possibly other versions before 3.8.6.16, allows remote attackers to execute a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5397
|
2008-09-6 06:30 |
2008-02-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267815
|
- |
|
claroline
|
claroline
|
Cross-site scripting (XSS) vulnerability in admin/adminusers.php in Claroline before 1.8.6 allows remote authenticated administrators to inject arbitrary web script or HTML via the sort parameter. N…
|
CWE-79
Cross-site Scripting
|
CVE-2007-4741
|
2008-09-6 06:29 |
2007-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267816
|
- |
|
avnex
|
av_mp3_player
|
Avnex AV MP3 Player allows user-assisted remote attackers to cause a denial of service (application crash) via a malformed .au file that triggers a divide-by-zero error.
|
NVD-CWE-noinfo
|
CVE-2007-4885
|
2008-09-6 06:29 |
2007-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267817
|
- |
|
netinvoicing
|
netinvoicing
|
Unspecified vulnerability in netInvoicing before 2.7.3 has unknown impact and attack vectors, related to "security check soap".
|
NVD-CWE-noinfo
|
CVE-2007-4910
|
2008-09-6 06:29 |
2007-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267818
|
- |
|
invision_power_services
|
invision_power_board
|
ips_kernel/class_upload.php in Invision Power Board (IPB or IP.Board) 2.3.1 up to 20070912 allows remote attackers to upload arbitrary script files with crafted image filenames to uploads/, where the…
|
CWE-94
Code Injection
|
CVE-2007-4913
|
2008-09-6 06:29 |
2007-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267819
|
- |
|
office_efficiencies
|
safesquid
|
Unspecified vulnerability in Office Efficiencies SafeSquid 4.1.x has unknown impact and attack vectors, related to a "serious security flaw," possibly specific to Linux.
|
NVD-CWE-noinfo
|
CVE-2007-4936
|
2008-09-6 06:29 |
2007-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267820
|
- |
|
emc
|
vmware_server
|
EMC VMware Server before 1.0.4 Build 56528 writes passwords in cleartext to unspecified log files, which allows local users to obtain sensitive information by reading these files, a different vulnera…
|
CWE-310
Cryptographic Issues
|
CVE-2007-5024
|
2008-09-6 06:29 |
2007-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|