266121
|
- |
|
phpmyadmin
|
phpmyadmin
|
Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.10.1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the fieldkey parameter to browse_foreigners.php…
|
NVD-CWE-Other
|
CVE-2007-2245
|
2017-07-29 10:31 |
2007-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266122
|
- |
|
xaraya
|
xaraya
|
Unspecified vulnerability in the Roles module in Xaraya 1.1.2 and earlier allows attackers to gain privileges via unspecified vectors, probably related to incorrect permission checking in xartemplate…
|
NVD-CWE-Other
|
CVE-2007-2251
|
2017-07-29 10:31 |
2007-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266123
|
- |
|
exponent
|
exponent_cms
|
Directory traversal vulnerability in iconspopup.php in Exponent CMS 0.96.6 Alpha and earlier allows remote attackers to obtain sensitive information via a .. (dot dot) in the icodir parameter.
|
NVD-CWE-Other
|
CVE-2007-2252
|
2017-07-29 10:31 |
2007-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266124
|
- |
|
exponent
|
exponent_cms
|
Exponent CMS 0.96.6 Alpha and earlier allows remote attackers to obtain path information via a direct request for (1) sdk/blanks/formcontrol.php and (2) sdk/blanks/file_modules.php.
|
CWE-200
Information Exposure
|
CVE-2007-2253
|
2017-07-29 10:31 |
2007-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266125
|
- |
|
sun
|
cluster
|
Unspecified vulnerability in Sun Cluster 3.1 and Solaris Cluster 3.2 before 20070424 allows remote authenticated users, operating from a different cluster node, to cause a denial of service (data cor…
|
NVD-CWE-Other
|
CVE-2007-2267
|
2017-07-29 10:31 |
2007-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266126
|
- |
|
hp
|
storageworks_command_view storageworks_replication_monitor storageworks_tiered_storage_manager
|
Unspecified vulnerability in HP StorageWorks Command View Advanced Edition for XP before 5.6.0-01, XP Replication Monitor before 5.6.0-01, and XP Tiered Storage Manager before 5.5.0-02 allows local u…
|
NVD-CWE-Other
|
CVE-2007-2275
|
2017-07-29 10:31 |
2007-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266127
|
- |
|
cisco
|
netflow_collection_engine
|
Cisco Network Services (CNS) NetFlow Collection Engine (NFC) before 6.0 has an nfcuser account with the default password nfcuser, which allows remote attackers to modify the product configuration and…
|
NVD-CWE-Other
|
CVE-2007-2282
|
2017-07-29 10:31 |
2007-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266128
|
- |
|
cisco
|
netflow_collection_engine
|
The vendor has addressed this issue through the update 6.0.0 of the NetFlow Collection Engine.
|
NVD-CWE-Other
|
CVE-2007-2282
|
2017-07-29 10:31 |
2007-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266129
|
- |
|
apple
|
quicktime
|
Heap-based buffer overflow in the JVTCompEncodeFrame function in Apple Quicktime 7.1.5 and other versions before 7.2 allows remote attackers to execute arbitrary code via a crafted H.264 MOV file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-2295
|
2017-07-29 10:31 |
2007-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266130
|
- |
|
apple
|
quicktime
|
Integer overflow in the FlipFileTypeAtom_BtoN function in Apple Quicktime 7.1.5, and other versions before 7.2, allows remote attackers to execute arbitrary code via a crafted M4V (MP4) file.
|
CWE-189
Numeric Errors
|
CVE-2007-2296
|
2017-07-29 10:31 |
2007-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|