264201
|
- |
|
inotify
|
inotify-tools
|
Buffer overflow in the inotifytools_snprintf function in src/inotifytools.c in the inotify-tools library before 3.11 allows context-dependent attackers to execute arbitrary code via a long filename.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5037
|
2017-07-29 10:33 |
2007-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264202
|
- |
|
lhaplus
|
lhaplus
|
Heap-based buffer overflow in Lhaplus before 1.55 allows remote attackers to execute arbitrary code via a long filename in an ARJ archive.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5048
|
2017-07-29 10:33 |
2007-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264203
|
- |
|
phpgedview
|
phpgedview
|
Multiple cross-site scripting (XSS) vulnerabilities in PhpGedView 4.1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) box_width, (2) PEDIGREE_GENERATIONS, and (3) rootid p…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5051
|
2017-07-29 10:33 |
2007-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264204
|
- |
|
webmin
|
webmin
|
Unspecified vulnerability in Webmin before 1.370 on Windows allows remote authenticated users to execute arbitrary commands via a crafted URL.
|
CWE-20
Improper Input Validation
|
CVE-2007-5066
|
2017-07-29 10:33 |
2007-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264205
|
- |
|
redhat
|
linux
|
Red Hat Enterprise Linux 4 does not properly compile and link gdm with tcp_wrappers on x86_64 platforms, which might allow remote attackers to bypass intended access restrictions.
|
NVD-CWE-Other
|
CVE-2007-5079
|
2017-07-29 10:33 |
2007-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264206
|
- |
|
realnetworks
|
realone_player realplayer realplayer_enterprise
|
Integer overflow in RealNetworks RealPlayer 10 and 10.5, RealOne Player 1, and RealPlayer Enterprise for Windows allows remote attackers to execute arbitrary code via a crafted Lyrics3 2.00 tag in an…
|
CWE-189
Numeric Errors
|
CVE-2007-5080
|
2017-07-29 10:33 |
2007-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264207
|
- |
|
sisd
|
freeside
|
Cross-site scripting (XSS) vulnerability in search/cust_bill_event.cgi in Freeside 1.7.2 allows remote attackers to inject arbitrary web script or HTML via the failed parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2007-5088
|
2017-07-29 10:33 |
2007-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264208
|
- |
|
furquim
|
chironfs
|
ChironFS before 1.0 RC7 sets user/group ownership to the mounter account instead of the creator account when files are created, which allows local users to gain privileges.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-5101
|
2017-07-29 10:33 |
2007-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264209
|
- |
|
bcoos
|
bcoos
|
SQL injection vulnerability in index.php in the Arcade module in bcoos 1.0.10 allows remote attackers to execute arbitrary SQL commands via the gid parameter in a play_game action. NOTE: the provena…
|
CWE-89
SQL Injection
|
CVE-2007-5104
|
2017-07-29 10:33 |
2007-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264210
|
- |
|
ekke_doerre
|
mods_4_xoops_contenido_ez_publish
|
Multiple PHP remote file inclusion vulnerabilities in Ekke Doerre Contenido 42VariablVersion (42VV10) in contenido_hacks in Mods 4 Xoops Contenido eZ publish (pdf4cms) allow remote attackers to execu…
|
CWE-94
Code Injection
|
CVE-2007-5115
|
2017-07-29 10:33 |
2007-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|