259131
|
- |
|
perfection_bytes
|
pbemail
|
Absolute path traversal vulnerability in a certain ActiveX control in PBEmail7Ax.dll in PBEmail 7 ActiveX Edition allows remote attackers to create or overwrite arbitrary files via a full pathname in…
|
CWE-22
Path Traversal
|
CVE-2007-5446
|
2017-09-29 10:29 |
2007-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259132
|
- |
|
ioncube php
|
php_encoder php
|
ioncube_loader_win_5.2.dll in the ionCube Loader 6.5 extension for PHP 5.2.4 does not follow safe_mode and disable_functions restrictions, which allows context-dependent attackers to bypass intended …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-5447
|
2017-09-29 10:29 |
2007-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259133
|
- |
|
softbiz
|
recipes_portal_script
|
SQL injection vulnerability in searchresult.php in Softbiz Recipes Portal Script allows remote attackers to execute arbitrary SQL commands via the sbcat_id parameter.
|
CWE-89
SQL Injection
|
CVE-2007-5449
|
2017-09-29 10:29 |
2007-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259134
|
- |
|
com_colorlab joomla
|
com_colorlab joomla
|
PHP remote file inclusion vulnerability in admin.color.php in the com_colorlab (aka com_color) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConf…
|
CWE-94
Code Injection
|
CVE-2007-5451
|
2017-09-29 10:29 |
2007-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259135
|
- |
|
php-stats
|
php-stats
|
Multiple SQL injection vulnerabilities in php-stats.recjs.php in Php-Stats 0.1.9.2 allow remote attackers to execute arbitrary SQL commands via the (1) ip or (2) t parameter.
|
CWE-89
SQL Injection
|
CVE-2007-5452
|
2017-09-29 10:29 |
2007-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259136
|
- |
|
php-stats
|
php-stats
|
Multiple eval injection vulnerabilities in Php-Stats 0.1.9.2 allow remote authenticated administrators to execute arbitrary code by writing PHP sequences to the php-stats-options record in the _optio…
|
CWE-94
Code Injection
|
CVE-2007-5453
|
2017-09-29 10:29 |
2007-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259137
|
- |
|
alorys-hebergement
|
kwsphp newsletter_module
|
SQL injection vulnerability in index.php in the newsletter module 1.0 for KwsPHP, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the newsletter param…
|
CWE-89
SQL Injection
|
CVE-2007-5458
|
2017-09-29 10:29 |
2007-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259138
|
- |
|
mydoop
|
doop_cms
|
Directory traversal vulnerability in doop CMS 1.3.7 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter to an unspecified compone…
|
CWE-22
Path Traversal
|
CVE-2007-5465
|
2017-09-29 10:29 |
2007-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259139
|
- |
|
extremail
|
extremail
|
Multiple buffer overflows in eXtremail 2.1.1 and earlier allow remote attackers to (1) have an unknown impact by sending multiple long strings to the IMAP port (143/tcp); (2) execute arbitrary code v…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5466
|
2017-09-29 10:29 |
2007-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259140
|
- |
|
extremail
|
extremail
|
Integer overflow in eXtremail 2.1.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long USER command containing "%s" sequences to the pop…
|
CWE-189
Numeric Errors
|
CVE-2007-5467
|
2017-09-29 10:29 |
2007-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|