257521
|
- |
|
phpbb2
|
phpbb2_plus
|
exploitation requires register_globals to be enabled
|
CWE-94
Code Injection
|
CVE-2007-5009
|
2017-09-29 10:29 |
2007-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257522
|
- |
|
streamline
|
streamline
|
Multiple PHP remote file inclusion vulnerabilities in Streamline PHP Media Server 1.0-beta4 allow remote attackers to execute arbitrary PHP code via a URL in the sl_theme_unix_path parameter to (1) a…
|
CWE-94
Code Injection
|
CVE-2007-5015
|
2017-09-29 10:29 |
2007-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257523
|
- |
|
insane_visions
|
onecms
|
SQL injection vulnerability in userreviews.php in OneCMS 2.4 allows remote attackers to execute arbitrary SQL commands via the abc parameter.
|
CWE-89
SQL Injection
|
CVE-2007-5016
|
2017-09-29 10:29 |
2007-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257524
|
- |
|
yahoo
|
messenger
|
Absolute path traversal vulnerability in a certain ActiveX control in the CYFT object in ft60.dll in Yahoo! Messenger 8.1.0.421 allows remote attackers to force a download, and create or overwrite ar…
|
CWE-22
Path Traversal
|
CVE-2007-5017
|
2017-09-29 10:29 |
2007-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257525
|
- |
|
david_harris
|
mercury_32
|
Stack-based buffer overflow in IMAPD in Mercury/32 4.52 allows remote authenticated users to execute arbitrary code via a long argument in a SEARCH ON command. NOTE: this issue might overlap with CV…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5018
|
2017-09-29 10:29 |
2007-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257526
|
- |
|
sun
|
java_web_start jre sdk
|
Buffer overflow in the Sun Java Web Start ActiveX control in Java Runtime Environment (JRE) 1.6.0_X allows remote attackers to have an unknown impact via a long argument to the dnsResolve (isInstalle…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5019
|
2017-09-29 10:29 |
2007-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257527
|
- |
|
airdefense
|
airsensor
|
Multiple buffer overflows in the AirDefense Airsensor M520 with firmware 4.3.1.1 and 4.4.1.4 allow remote authenticated users to cause a denial of service (HTTPS service outage) via a crafted query s…
|
CWE-119 CWE-20
Incorrect Access of Indexable Resource ('Range Error') Improper Input Validation
|
CVE-2007-5036
|
2017-09-29 10:29 |
2007-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257528
|
- |
|
izicontents
|
izicontents
|
Multiple incomplete blacklist vulnerabilities in iziContents 1 RC6 and earlier allow remote attackers to execute arbitrary PHP code via a URL in (1) the admin_home parameter to modules/poll/poll_summ…
|
CWE-94
Code Injection
|
CVE-2007-5053
|
2017-09-29 10:29 |
2007-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257529
|
- |
|
izicontents
|
izicontents
|
Multiple PHP remote file inclusion vulnerabilities in iziContents 1 RC6 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the gsLanguage parameter to (1) search/search.php…
|
CWE-94
Code Injection
|
CVE-2007-5054
|
2017-09-29 10:29 |
2007-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257530
|
- |
|
izicontents
|
izicontents
|
Multiple directory traversal vulnerabilities in iziContents 1 RC6 and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) the admin_home parameter to…
|
CWE-22
Path Traversal
|
CVE-2007-5055
|
2017-09-29 10:29 |
2007-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|