256911
|
- |
|
irfanview
|
irfanview
|
Buffer overflow in IrfanView 4.00 and earlier allows user-assisted remote attackers to execute arbitrary code via a crafted .IFF file.
|
NVD-CWE-Other
|
CVE-2007-2363
|
2017-10-11 10:32 |
2007-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256912
|
- |
|
burnstone
|
burncms
|
Multiple PHP remote file inclusion vulnerabilities in burnCMS 0.2 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the root parameter to (1) mysql.class.php or (2) postgr…
|
NVD-CWE-Other
|
CVE-2007-2364
|
2017-10-11 10:32 |
2007-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256913
|
- |
|
adobe
|
golive illustrator photoshop photoshop_elements
|
Buffer overflow in Adobe Photoshop CS2 and CS3, Photoshop Elements 5.0, Illustrator CS3, and GoLive 9 allows user-assisted remote attackers to execute arbitrary code via a crafted .PNG file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-2365
|
2017-10-11 10:32 |
2007-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256914
|
- |
|
corel
|
paint_shop_pro
|
Buffer overflow in Corel Paint Shop Pro 11.20 allows user-assisted remote attackers to execute arbitrary code via a crafted .PNG file.
|
NVD-CWE-Other
|
CVE-2007-2366
|
2017-10-11 10:32 |
2007-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256915
|
- |
|
webspell
|
webspell
|
picture.php in WebSPELL 4.01.02 and earlier allows remote attackers to read arbitrary files via the file parameter.
|
NVD-CWE-Other
|
CVE-2007-2368
|
2017-10-11 10:32 |
2007-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256916
|
- |
|
php webspell
|
php webspell
|
Directory traversal vulnerability in picture.php in WebSPELL 4.01.02 and earlier, when PHP before 4.3.0 is used, allows remote attackers to read arbitrary files via a .. (dot dot) in the id parameter.
|
NVD-CWE-Other
|
CVE-2007-2369
|
2017-10-11 10:32 |
2007-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256917
|
- |
|
php webspell
|
php webspell
|
Successful exploitation requires that PHP before 4.3.0 is used.
|
NVD-CWE-Other
|
CVE-2007-2369
|
2017-10-11 10:32 |
2007-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256918
|
- |
|
xoops
|
john_mordo_jobs_module
|
SQL injection vulnerability in index.php in the John Mordo Jobs 2.4 and earlier module for XOOPS allows remote attackers to execute arbitrary SQL commands via the cid parameter in a jobsview action. …
|
NVD-CWE-Other
|
CVE-2007-2370
|
2017-10-11 10:32 |
2007-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256919
|
- |
|
gregory_kokanosky
|
phpmynewsletter
|
admin/index.php in Gregory Kokanosky phpMyNewsletter 0.8 beta5 and earlier provides access to configuration modification before login, which allows remote attackers to cause a denial of service (loss…
|
NVD-CWE-Other
|
CVE-2007-2371
|
2017-10-11 10:32 |
2007-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256920
|
- |
|
gregory_kokanosky
|
phpmynewsletter
|
admin/send_mod.php in Gregory Kokanosky phpMyNewsletter 0.8 beta5 and earlier prints a Location header but does not exit when administrative credentials are missing, which allows remote attackers to …
|
NVD-CWE-Other
|
CVE-2007-2372
|
2017-10-11 10:32 |
2007-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|