264881
|
- |
|
roi_revolution
|
urchin
|
Multiple cross-site scripting (XSS) vulnerabilities in urchin.cgi in Urchin 5.6.00r2 allow remote attackers to inject arbitrary web script or HTML via the (1) dtc, (2) vid, (3) n, (4) dt, (5) ed, and…
|
CWE-79
Cross-site Scripting
|
CVE-2007-4713
|
2017-07-29 10:33 |
2007-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264882
|
- |
|
phd
|
help_desk
|
Multiple SQL injection vulnerabilities in PHD Help Desk before 1.31 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2007-4716
|
2017-07-29 10:33 |
2007-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264883
|
- |
|
hitachi
|
jp1_cm2_network_node_manager
|
Unspecified vulnerability in the Shared Trace Service in Hitachi JP1/Cm2/Network Node Manager (NNM) 07-10 through 07-10-05, and NNM Starter Edition Enterprise and 250 08-00 through 08-10, allows remo…
|
CWE-94
Code Injection
|
CVE-2007-4720
|
2017-07-29 10:33 |
2007-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264884
|
- |
|
speedtech
|
stphplibrary
|
Multiple PHP remote file inclusion vulnerabilities in SpeedTech PHP Library (STPHPLibrary) 0.8.0 allow remote attackers to execute arbitrary PHP code via a URL in the (1) db_conf or (2) ADODB_DIR par…
|
CWE-94 CWE-20
Code Injection Improper Input Validation
|
CVE-2007-4738
|
2017-07-29 10:33 |
2007-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264885
|
- |
|
joomla mambo
|
akobook mambo_site_server
|
Multiple cross-site scripting (XSS) vulnerabilities in the AkoBook 3.42 and earlier component (com_akobook) for Mambo allow remote attackers to inject arbitrary web script or HTML via Javascript even…
|
CWE-79
Cross-site Scripting
|
CVE-2007-4745
|
2017-07-29 10:33 |
2007-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264886
|
- |
|
cisco
|
video_surveillance_ip_gateway_encoder_decoder video_surveillance_sp_isp_decoder_software video_surveillance_sp_isp
|
The Cisco Video Surveillance IP Gateway Encoder/Decoder (Standalone and Module) firmware 1.8.1 and earlier, Video Surveillance SP/ISP Decoder Software firmware 1.11.0 and earlier, and the Video Surve…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-4746
|
2017-07-29 10:33 |
2007-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264887
|
- |
|
cisco
|
video_surveillance_ip_gateway_encoder_decoder video_surveillance_sp_isp_decoder_software video_surveillance_sp_isp
|
The telnet service in Cisco Video Surveillance IP Gateway Encoder/Decoder (Standalone and Module) firmware 1.8.1 and earlier, Video Surveillance SP/ISP Decoder Software firmware 1.11.0 and earlier, a…
|
CWE-287
Improper Authentication
|
CVE-2007-4747
|
2017-07-29 10:33 |
2007-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264888
|
- |
|
thomson
|
st_2030_sip_phone
|
The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via (1) an empty SIP message or (2) a SIP INVITE message with a malformed To head…
|
NVD-CWE-Other
|
CVE-2007-4753
|
2017-07-29 10:33 |
2007-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264889
|
- |
|
hitachi
|
ucosminexus_application_server_enterprise ucosminexus_application_server_standard ucosminexus_developer_standard ucosminexus_service_platform
|
The javadoc tool in Cosminexus Developer's Kit for Java in Cosminexus 7 and 7.5 can generate HTML documents that contain cross-site scripting (XSS) vulnerabilities, which allows remote attackers to i…
|
CWE-79
Cross-site Scripting
|
CVE-2007-4760
|
2017-07-29 10:33 |
2007-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264890
|
- |
|
pawfaliki
|
pawfaliki
|
Directory traversal vulnerability in pawfaliki.php in Pawfaliki 0.5.1 allows remote attackers to list arbitrary files via a .. (dot dot) in the page parameter. NOTE: the provenance of this informati…
|
CWE-22
Path Traversal
|
CVE-2007-4764
|
2017-07-29 10:33 |
2007-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|