267831
|
- |
|
yahoo
|
messenger
|
Yahoo! Messenger 8.1.0.209 and 8.1.0.402 allows remote attackers to cause a denial of service (application crash) via certain file-transfer packets, possibly involving a buffer overflow, as demonstra…
|
CWE-119 CWE-20
Incorrect Access of Indexable Resource ('Range Error') Improper Input Validation
|
CVE-2007-4635
|
2008-09-6 06:28 |
2007-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267832
|
- |
|
firebirdsql
|
firebird
|
The Services API in Firebird before 2.0.2 allows remote authenticated users without SYSDBA privileges to read the server log (firebird.log), aka CORE-1148.
|
CWE-200 CWE-264
Information Exposure Permissions, Privileges, and Access Controls
|
CVE-2007-4669
|
2008-09-6 06:28 |
2007-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267833
|
- |
|
iexpress
|
property_pro
|
SQL injection vulnerability in vir_login.asp in iExpress Property Pro allows remote attackers to execute arbitrary SQL commands via the Password parameter. NOTE: the Username parameter is covered by…
|
NVD-CWE-Other
|
CVE-2007-3992
|
2008-09-6 06:27 |
2007-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267834
|
- |
|
mike_dubman
|
windows_rsh_daemon
|
Buffer overflow in Mike Dubman Windows RSH daemon (rshd) 1.7 has unknown impact and remote attack vectors, aka ZD-00000034. NOTE: this information is based upon a vague advisory by a vulnerability i…
|
NVD-CWE-Other
|
CVE-2007-4006
|
2008-09-6 06:27 |
2007-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267835
|
- |
|
interspire
|
articlelive_nx
|
Multiple unspecified vulnerabilities in Interspire ArticleLive NX before 1.7.1.2 have unknown impact and attack vectors, possibly related to (1) AL_SANITIZE and (2) "Calling the constructor to make s…
|
NVD-CWE-Other
|
CVE-2007-4147
|
2008-09-6 06:27 |
2007-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267836
|
- |
|
freshmeat
|
generic_software_wrappers_toolkit
|
Multiple race conditions in certain system call wrappers in Generic Software Wrappers Toolkit (GSWTK) allow local users to defeat system call interposition and possibly gain privileges or bypass audi…
|
NVD-CWE-Other
|
CVE-2007-4302
|
2008-09-6 06:27 |
2007-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267837
|
- |
|
cerb
|
cerbng
|
Multiple race conditions in (1) certain rules and (2) argument copying during VM protection, in CerbNG for FreeBSD 4.8 allow local users to defeat system call interposition and possibly gain privileg…
|
NVD-CWE-Other
|
CVE-2007-4303
|
2008-09-6 06:27 |
2007-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267838
|
- |
|
cerb
|
cerbng
|
CerbNG for FreeBSD 4.8 does not properly implement VM protection when attempting to prevent system call wrapper races, which allows local users to have an unknown impact related to an "incorrect writ…
|
NVD-CWE-Other
|
CVE-2007-4304
|
2008-09-6 06:27 |
2007-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267839
|
- |
|
cerb
|
cerbng
|
More information about this vulnerability can be found at: http://www.securityfocus.com/bid/25259
|
NVD-CWE-Other
|
CVE-2007-4304
|
2008-09-6 06:27 |
2007-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267840
|
- |
|
sysjail systrace todd_miller
|
sysjail systrace sudo
|
Multiple race conditions in the (1) Sudo monitor mode and (2) Sysjail policies in Systrace on NetBSD and OpenBSD allow local users to defeat system call interposition, and consequently bypass access …
|
NVD-CWE-Other
|
CVE-2007-4305
|
2008-09-6 06:27 |
2007-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|