255741
|
- |
|
vizayn_urun
|
tanitim_sitesi
|
SQL injection vulnerability in default.asp in Vizayn Urun Tanitim Sitesi 0.2 allows remote attackers to execute arbitrary SQL commands via the id parameter in a haberdetay action.
|
CWE-89
SQL Injection
|
CVE-2007-2803
|
2017-10-11 10:32 |
2007-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255742
|
- |
|
cisco
|
ios_transmission_control_protocol
|
Cisco IOS 12.4 and earlier, when using the crypto packages and SSL support is enabled, allows remote attackers to cause a denial of service via a malformed (1) ClientHello, (2) ChangeCipherSpec, or (…
|
NVD-CWE-Other
|
CVE-2007-2813
|
2017-10-11 10:32 |
2007-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255743
|
- |
|
ol_bookmarks
|
ol_bookmarks
|
Multiple PHP remote file inclusion vulnerabilities in ol'bookmarks 0.7.4 allow remote attackers to execute arbitrary PHP code via a URL in the root parameter to (1) test1.php, (2) blackorange.php, (3…
|
CWE-94
Code Injection
|
CVE-2007-2816
|
2017-10-11 10:32 |
2007-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255744
|
- |
|
ol_bookmarks
|
ol_bookmarks
|
SQL injection vulnerability in read/index.php in ol'bookmarks 0.7.4 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2007-2817
|
2017-10-11 10:32 |
2007-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255745
|
- |
|
wavelink_media
|
tutorialcms
|
TutorialCMS 1.01 and earlier, when register_globals is enabled, allows remote attackers to bypass authentication via the (1) loggedIn and (2) activated parameters to (a) login.php, (b) headerLinks.ph…
|
NVD-CWE-Other
|
CVE-2007-2822
|
2017-10-11 10:32 |
2007-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255746
|
- |
|
alstrasoft
|
e-friends
|
SQL injection vulnerability in paypal.php in AlstraSoft E-Friends 4.21 and earlier allows remote attackers to execute arbitrary SQL commands via the pack parameter in a paypal action for index.php.
|
NVD-CWE-Other
|
CVE-2007-2824
|
2017-10-11 10:32 |
2007-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255747
|
- |
|
madirish_webmail
|
madirish_webmail
|
PHP remote file inclusion vulnerability in lib/addressbook.php in Madirish Webmail 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[basedir] parameter.
|
CWE-94
Code Injection
|
CVE-2007-2826
|
2017-10-11 10:32 |
2007-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255748
|
- |
|
madirish_webmail
|
madirish_webmail
|
A solution/patch has been released for these vulnerabilities:
CVE-2007-2826
CVE-2007-3058
https://sourceforge.net/projects/madirishwebmail/
https://sourceforge.net/project/shownotes.ph…
|
CWE-94
Code Injection
|
CVE-2007-2826
|
2017-10-11 10:32 |
2007-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255749
|
- |
|
lead_technologies
|
leadtools_raster_variant_object_library
|
A certain ActiveX control in LeadTools Raster Variant Object Library (LTRVR14e.dll) 14.5.0.44 allows remote attackers to overwrite arbitrary files via the WriteDataToFile method.
|
NVD-CWE-Other
|
CVE-2007-2851
|
2017-10-11 10:32 |
2007-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255750
|
- |
|
h\+h
|
vcdapilibapi_activex_control virtual_cd
|
The VCDAPILibApi ActiveX control in vc9api.DLL 9.0.0.57 in Virtual CD 9.0.0.2 allows remote attackers to execute arbitrary commands via a command line in the first argument to the VCDLaunchAndWait fu…
|
NVD-CWE-Other
|
CVE-2007-2853
|
2017-10-11 10:32 |
2007-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|