261281
|
- |
|
maxsi
|
evisit_analyst
|
The vendor has been notified and the vulnerability fixed.
|
CWE-89
SQL Injection
|
CVE-2007-3677
|
2017-07-29 10:32 |
2007-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261282
|
- |
|
quark
|
quarkxpress
|
Stack-based buffer overflow in the MSWord text-import extension (Word 6-2000 Filter.xnt) in QuarkXPress 7.2 for Windows, when using the Rectangle Text Box tool for importing text, allows user-assiste…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-3678
|
2017-07-29 10:32 |
2007-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261283
|
- |
|
quark
|
quarkxpress
|
Successful exploitation allows execution of arbitrary code when a user imports text from a malicious MSWord document using e.g. the "Rectangle Text Box" tool.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-3678
|
2017-07-29 10:32 |
2007-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261284
|
- |
|
ibm
|
aix
|
Stack-based buffer overflow in the odm_searchpath function in libodm in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary code via a long ODMPATH environment variable.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-3680
|
2017-07-29 10:32 |
2007-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261285
|
- |
|
masuga_design
|
unobtrusive_ajax_star_rating_bar
|
Multiple SQL injection vulnerabilities in Unobtrusive Ajax Star Rating Bar before 1.2.0 allow remote attackers to execute arbitrary SQL commands via the (1) q and (2) t parameters in (a) db.php and (…
|
NVD-CWE-Other
|
CVE-2007-3684
|
2017-07-29 10:32 |
2007-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261286
|
- |
|
masuga_design
|
unobtrusive_ajax_star_rating_bar
|
Cross-site scripting (XSS) vulnerability in rpc.php in Unobtrusive Ajax Star Rating Bar before 1.2.0 allows remote attackers to inject arbitrary web script or HTML via the q parameter.
|
NVD-CWE-Other
|
CVE-2007-3685
|
2017-07-29 10:32 |
2007-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261287
|
- |
|
masuga_design
|
unobtrusive_ajax_star_rating_bar
|
CRLF injection vulnerability in db.php in Unobtrusive Ajax Star Rating Bar before 1.2.0 allows remote attackers to inject arbitrary HTTP headers and data via CRLF sequences in the HTTP_REFERER parame…
|
NVD-CWE-Other
|
CVE-2007-3686
|
2017-07-29 10:32 |
2007-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261288
|
- |
|
dotclear
|
dotclear
|
Multiple cross-site request forgery (CSRF) vulnerabilities in DotClear 1.2.6 allow remote attackers to perform actions as arbitrary users via the (1) tool_url parameter to ecrire/tools.php and multip…
|
NVD-CWE-Other
|
CVE-2007-3688
|
2017-07-29 10:32 |
2007-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261289
|
- |
|
drupal
|
print_module
|
The Print module before 4.7-1.0 and 5.x before 5.x-1.2 for Drupal allows remote attackers to read restricted posts in (1) Organic Groups, (2) Taxonomy Access Control, (3) Taxonomy Access Lite, and ot…
|
NVD-CWE-Other
|
CVE-2007-3689
|
2017-07-29 10:32 |
2007-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261290
|
- |
|
drupal
|
forward_module
|
The Forward module before 4.7-1.1 and 5.x before 5.x-1.0 for Drupal allows remote attackers to read restricted posts in (1) Organic Groups, (2) Taxonomy Access Control, (3) Taxonomy Access Lite, and …
|
NVD-CWE-Other
|
CVE-2007-3690
|
2017-07-29 10:32 |
2007-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|