260021
|
- |
|
dinkumsoft.com
|
dl_paycart
|
SQL injection vulnerability in viewitem.php in DL PayCart 1.01 allows remote attackers to execute arbitrary SQL commands via the ItemID parameter.
|
CWE-89
SQL Injection
|
CVE-2007-4604
|
2017-09-29 10:29 |
2007-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260022
|
- |
|
vwar
|
virtual_war
|
PHP remote file inclusion vulnerability in convert/mvcw.php in Virtual War (VWar) 1.5.0 R15 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the vwar_root parameter, a d…
|
CWE-94
Code Injection
|
CVE-2007-4605
|
2017-09-29 10:29 |
2007-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260023
|
- |
|
phpnuke-clan
|
phpnuke-clan
|
PHP remote file inclusion vulnerability in convert/mvcw_conver.php in the Virtual War (VWar) module for PHPNuke-Clan (PNC) 4.2.0 and earlier allows remote attackers to execute arbitrary PHP code via …
|
CWE-94
Code Injection
|
CVE-2007-4606
|
2017-09-29 10:29 |
2007-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260024
|
- |
|
flac nullsoft
|
libflac winamp
|
Multiple integer overflows in Free Lossless Audio Codec (FLAC) libFLAC before 1.2.1, as used in Winamp before 5.5 and other products, allow user-assisted remote attackers to execute arbitrary code vi…
|
CWE-189
Numeric Errors
|
CVE-2007-4619
|
2017-09-29 10:29 |
2007-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260025
|
- |
|
ibm
|
aix
|
Stack-based buffer overflow in the sendrmt function in bellmail in IBM AIX 5.2 and 5.3 allows local users to execute arbitrary code via a long parameter to the m command.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-4623
|
2017-09-29 10:29 |
2007-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260026
|
- |
|
algera
|
abc_estore
|
SQL injection vulnerability in index.php in ABC eStore 3.0 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.
|
NVD-CWE-Other
|
CVE-2007-4627
|
2017-09-29 10:29 |
2007-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260027
|
- |
|
phpns
|
phpns
|
SQL injection vulnerability in shownews.php in phpns 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2007-4628
|
2017-09-29 10:29 |
2007-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260028
|
- |
|
phpbg
|
phpbg
|
Multiple PHP remote file inclusion vulnerabilities in phpBG 0.9.1 allow remote attackers to execute arbitrary PHP code via a URL in the rootdir parameter to (1) intern/admin/other/backup.php, (2) int…
|
CWE-20
Improper Input Validation
|
CVE-2007-4636
|
2017-09-29 10:29 |
2007-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260029
|
- |
|
xgb
|
xgb
|
xGB.php in xGB 2.0 does not require authentication for an admin edit action, which allows remote attackers to make unspecified changes via an unknown series of steps.
|
NVD-CWE-noinfo
|
CVE-2007-4637
|
2017-09-29 10:29 |
2007-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260030
|
- |
|
pakupaku
|
pakupaku_cms
|
Unrestricted file upload vulnerability in index.php in Pakupaku CMS 0.4 and earlier allows remote attackers to upload and execute arbitrary PHP files in uploads/ via an Uploads action.
|
CWE-94 CWE-264
Code Injection Permissions, Privileges, and Access Controls
|
CVE-2007-4640
|
2017-09-29 10:29 |
2007-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|