256941
|
- |
|
futurenuke
|
platinum
|
PHP remote file inclusion vulnerability in modules/Forums/favorites.php in PHP-Nuke Platinum 7.6.b.5 allows remote attackers to execute arbitrary PHP code via a URL in the nuke_bb_root_path parameter.
|
CWE-94
Code Injection
|
CVE-2007-5676
|
2017-09-29 10:29 |
2007-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256942
|
- |
|
deeemm
|
dmcms
|
SQL injection vulnerability in index.php in DeeEmm.com DM CMS 0.7.0.Beta allows remote attackers to execute arbitrary SQL commands via the id parameter in the media page (build_media_content.php). NO…
|
CWE-89
SQL Injection
|
CVE-2007-5679
|
2017-09-29 10:29 |
2007-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256943
|
- |
|
phpimage
|
php_image
|
Multiple PHP remote file inclusion vulnerabilities in PHP Image 1.2 allow remote attackers to execute arbitrary PHP code via a URL in the xarg parameter to (1) xarg_corner.php, (2) xarg_corner_bottom…
|
CWE-94
Code Injection
|
CVE-2007-5697
|
2017-09-29 10:29 |
2007-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256944
|
- |
|
eiqnetworks
|
enterprise_security_analyzer
|
Stack-based buffer overflow in eIQNetworks Enterprise Security Analyzer (ESA) 2.5 allows remote attackers to execute arbitrary code via certain data on TCP port 10616 that results in a long argument …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5699
|
2017-09-29 10:29 |
2007-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256945
|
- |
|
sony
|
sonicstage_connect_player
|
Stack-based buffer overflow in Sony SonicStage CONNECT Player (CP) 4.3 allows remote attackers to execute arbitrary code via a long file name in an M3U file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5709
|
2017-09-29 10:29 |
2007-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256946
|
- |
|
sun
|
solaris
|
Unspecified vulnerability in the Internet Protocol (IP) functionality in Sun Solaris 10 allows local users to cause a denial of service (panic) via unspecified vectors, probably related to a UDP pack…
|
NVD-CWE-noinfo
|
CVE-2007-5716
|
2017-09-29 10:29 |
2007-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256947
|
- |
|
minibb
|
minibb
|
SQL injection vulnerability in bb_func_search.php in miniBB 2.1 allows remote attackers to execute arbitrary SQL commands via the table parameter to index.php.
|
CWE-89
SQL Injection
|
CVE-2007-5719
|
2017-09-29 10:29 |
2007-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256948
|
- |
|
profilecms
|
profilecms
|
Unrestricted file upload vulnerability in the profiles script in ProfileCMS 1.0 allows remote attackers to upload and execute arbitrary PHP code via unspecified vectors involving creation of a profil…
|
CWE-94
Code Injection
|
CVE-2007-5720
|
2017-09-29 10:29 |
2007-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256949
|
- |
|
myspacepros
|
myspace_resource_script
|
PHP remote file inclusion vulnerability in _theme/breadcrumb.php in MySpacePros MySpace Resource Script (MSRS) 1.21 allows remote attackers to execute arbitrary PHP code via a URL in the rootBase par…
|
CWE-94
Code Injection
|
CVE-2007-5721
|
2017-09-29 10:29 |
2007-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256950
|
- |
|
apache
|
jakarta_slide
|
Absolute path traversal vulnerability in Apache Jakarta Slide 2.1 and earlier allows remote authenticated users to read arbitrary files via a WebDAV write request that specifies an entity with a SYST…
|
CWE-22
Path Traversal
|
CVE-2007-5731
|
2017-09-29 10:29 |
2007-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|