265071
|
- |
|
calacode
|
atmail_webmail_system
|
Cross-site scripting (XSS) vulnerability in util.php in Calacode @Mail before 5.2 allows remote attackers to inject arbitrary web script or HTML via the func parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2007-6196
|
2017-07-29 10:34 |
2007-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265072
|
- |
|
wesnoth
|
wesnoth
|
Unspecified vulnerability in Wesnoth 1.2.x before 1.2.8, and 1.3.x before 1.3.12, allows attackers to cause a denial of service (hang) via a "faulty add-on" and possibly execute other commands via un…
|
NVD-CWE-noinfo
|
CVE-2007-6201
|
2017-07-29 10:34 |
2007-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265073
|
- |
|
zsh
|
zsh
|
Util/difflog.pl in zsh 4.3.4 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-6209
|
2017-07-29 10:34 |
2007-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265074
|
- |
|
typespeed
|
typespeed
|
typespeed before 0.6.4 allows remote attackers to cause a denial of service (application crash) via unspecified network behavior that triggers a divide-by-zero error.
|
CWE-189
Numeric Errors
|
CVE-2007-6220
|
2017-07-29 10:34 |
2007-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265075
|
- |
|
tumusika_evolution
|
tumusika_evolution
|
TuMusika Evolution 1.7R5 allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function. NOTE: the provenance of this information i…
|
CWE-200
Information Exposure
|
CVE-2007-6221
|
2017-07-29 10:34 |
2007-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265076
|
- |
|
crm_ctt
|
interleave
|
The CheckCustomerAccess function in functions.php in CRM-CTT Interleave before 4.2.0 (formerly CRM-CTT) does not properly verify user privileges, which allows remote authenticated users with the LIMI…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-6222
|
2017-07-29 10:34 |
2007-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265077
|
- |
|
sun
|
solaris
|
Unspecified vulnerability in Sun Solaris 10, when 64bit mode is used on the x86 platform, allows local users in a Linux (lx) branded zone to cause a denial of service (panic) via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2007-6225
|
2017-07-29 10:34 |
2007-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265078
|
- |
|
yahoo
|
toolbar
|
Stack-based buffer overflow in the Helper class in the yt.ythelper.2 ActiveX control in Yahoo! Toolbar 1.4.1 allows remote attackers to cause a denial of service (browser crash) via a long argument t…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-6228
|
2017-07-29 10:34 |
2007-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265079
|
- |
|
vavoom
|
vavoom
|
Format string vulnerability in the Say command in sv_main.cpp in Vavoom 1.24 and earlier allows remote attackers to execute arbitrary code via format string specifiers in a chat message, related to a…
|
NVD-CWE-Other
|
CVE-2007-4533
|
2017-07-29 10:33 |
2007-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265080
|
- |
|
thomson
|
st_2030_sip_phone
|
The Thomson ST 2030 SIP phone with software 1.52.1 allows remote attackers to cause a denial of service (device hang) via an INVITE message with a Via header that contains a '/' (slash) instead of th…
|
NVD-CWE-noinfo
|
CVE-2007-4553
|
2017-07-29 10:33 |
2007-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|