257111
|
- |
|
hp
|
hp-ux
|
The logins command in HP-UX B.11.31, B.11.23, and B.11.11 does not correctly report password status, which allows remote attackers to obtain privileges when certain "password issues" are not detected.
|
CWE-287
Improper Authentication
|
CVE-2007-5008
|
2017-09-29 10:29 |
2007-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257112
|
- |
|
phpbb2
|
phpbb2_plus
|
PHP remote file inclusion vulnerability in language/lang_german/lang_main_album.php in phpBB Plus 1.53, and 1.53a before 20070922, allows remote attackers to execute arbitrary PHP code via a URL in t…
|
CWE-94
Code Injection
|
CVE-2007-5009
|
2017-09-29 10:29 |
2007-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257113
|
- |
|
phpbb2
|
phpbb2_plus
|
exploitation requires register_globals to be enabled
|
CWE-94
Code Injection
|
CVE-2007-5009
|
2017-09-29 10:29 |
2007-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257114
|
- |
|
streamline
|
streamline
|
Multiple PHP remote file inclusion vulnerabilities in Streamline PHP Media Server 1.0-beta4 allow remote attackers to execute arbitrary PHP code via a URL in the sl_theme_unix_path parameter to (1) a…
|
CWE-94
Code Injection
|
CVE-2007-5015
|
2017-09-29 10:29 |
2007-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257115
|
- |
|
insane_visions
|
onecms
|
SQL injection vulnerability in userreviews.php in OneCMS 2.4 allows remote attackers to execute arbitrary SQL commands via the abc parameter.
|
CWE-89
SQL Injection
|
CVE-2007-5016
|
2017-09-29 10:29 |
2007-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257116
|
- |
|
yahoo
|
messenger
|
Absolute path traversal vulnerability in a certain ActiveX control in the CYFT object in ft60.dll in Yahoo! Messenger 8.1.0.421 allows remote attackers to force a download, and create or overwrite ar…
|
CWE-22
Path Traversal
|
CVE-2007-5017
|
2017-09-29 10:29 |
2007-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257117
|
- |
|
david_harris
|
mercury_32
|
Stack-based buffer overflow in IMAPD in Mercury/32 4.52 allows remote authenticated users to execute arbitrary code via a long argument in a SEARCH ON command. NOTE: this issue might overlap with CV…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5018
|
2017-09-29 10:29 |
2007-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257118
|
- |
|
sun
|
java_web_start jre sdk
|
Buffer overflow in the Sun Java Web Start ActiveX control in Java Runtime Environment (JRE) 1.6.0_X allows remote attackers to have an unknown impact via a long argument to the dnsResolve (isInstalle…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5019
|
2017-09-29 10:29 |
2007-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257119
|
- |
|
airdefense
|
airsensor
|
Multiple buffer overflows in the AirDefense Airsensor M520 with firmware 4.3.1.1 and 4.4.1.4 allow remote authenticated users to cause a denial of service (HTTPS service outage) via a crafted query s…
|
CWE-119 CWE-20
Incorrect Access of Indexable Resource ('Range Error') Improper Input Validation
|
CVE-2007-5036
|
2017-09-29 10:29 |
2007-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257120
|
- |
|
izicontents
|
izicontents
|
Multiple incomplete blacklist vulnerabilities in iziContents 1 RC6 and earlier allow remote attackers to execute arbitrary PHP code via a URL in (1) the admin_home parameter to modules/poll/poll_summ…
|
CWE-94
Code Injection
|
CVE-2007-5053
|
2017-09-29 10:29 |
2007-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|