261021
|
- |
|
suse
|
suse_linux
|
libgssapi before 0.6-13.7, as used by the ISC BIND named daemon in SUSE Linux Enterprise Server 10 SP 1, terminates upon an initialization error, which allows remote attackers to cause a denial of se…
|
NVD-CWE-Other
|
CVE-2007-5471
|
2017-07-29 10:33 |
2007-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261022
|
- |
|
mono
|
mono
|
StaticFileHandler.cs in System.Web in Mono before 1.2.5.2, when running on Windows, allows remote attackers to obtain source code of sensitive files via a request containing a trailing (1) space or (…
|
CWE-200
Information Exposure
|
CVE-2007-5473
|
2017-07-29 10:33 |
2007-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261023
|
- |
|
adobe opera
|
flash_player opera_browser
|
Unspecified vulnerability in Adobe Flash Player 9.0.47.0 and earlier, when running on Opera before 9.24 on Mac OS X, has unknown "Highly Severe" impact and unknown attack vectors.
|
NVD-CWE-noinfo
|
CVE-2007-5476
|
2017-07-29 10:33 |
2007-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261024
|
- |
|
innovaage
|
innovashop
|
Multiple cross-site scripting (XSS) vulnerabilities in InnovaAge InnovaShop allow remote attackers to inject arbitrary web script or HTML via the (1) msg parameter to msg.jsp, and the (2) contentid p…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5480
|
2017-07-29 10:33 |
2007-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261025
|
- |
|
distributed_checksum_clearinghouse
|
dcc
|
Distributed Checksum Clearinghouse (DCC) 1.3.65 allows remote attackers to cause a denial of service (crash) via a "SOCKS flood."
|
NVD-CWE-Other
|
CVE-2007-5481
|
2017-07-29 10:33 |
2007-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261026
|
- |
|
sun
|
storagetek_3510 storedge
|
Unspecified vulnerability in the FTP service in Sun StorEdge/StorageTek 3510 FC Array with firmware before 4.21 allows remote attackers, with access to the Ethernet management interface, to cause a d…
|
NVD-CWE-noinfo
|
CVE-2007-5482
|
2017-07-29 10:33 |
2007-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261027
|
- |
|
ibm
|
websphere_application_server
|
Unspecified vulnerability in the Administrative Scripting Tools (such as wsadmin or ANT) in IBM WebSphere Application Server 5.x and 6.0.x has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2007-5483
|
2017-07-29 10:33 |
2007-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261028
|
- |
|
dotproject
|
dotproject
|
dotProject before 2.1 does not properly check privileges when invoking the Companies module, which allows remote attackers to access this module via a crafted URL. NOTE: some of these details are ob…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-5486
|
2017-07-29 10:33 |
2007-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261029
|
- |
|
asterisk
|
asterisk-addons
|
Multiple SQL injection vulnerabilities in cdr_addon_mysql in Asterisk-Addons before 1.2.8, and 1.4.x before 1.4.4, allow remote attackers to execute arbitrary SQL commands via the (1) source and (2) …
|
CWE-89
SQL Injection
|
CVE-2007-5488
|
2017-07-29 10:33 |
2007-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261030
|
- |
|
openssl
|
fips_object_module
|
The PRNG implementation for the OpenSSL FIPS Object Module 1.1.1 does not perform auto-seeding during the FIPS self-test, which generates random data that is more predictable than expected and makes …
|
CWE-310
Cryptographic Issues
|
CVE-2007-5502
|
2017-07-29 10:33 |
2007-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|