256941
|
- |
|
php
|
php
|
Multiple integer overflows in libgd in PHP before 5.2.4 allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a large (1) srcW or (2) srcH va…
|
CWE-189
Numeric Errors
|
CVE-2007-3996
|
2017-09-29 10:29 |
2007-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256942
|
- |
|
mike_dubman
|
windows_rsh_daemon
|
Stack-based buffer overflow in Mike Dubman Windows RSH daemon (rshd) 1.7 allows remote attackers to execute arbitrary code via a long string to the shell port (514/tcp). NOTE: this might overlap CVE…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-4005
|
2017-09-29 10:29 |
2007-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256943
|
- |
|
mike_dubman
|
windows_rsh_daemon
|
http://secunia.com/advisories/26197/
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-4005
|
2017-09-29 10:29 |
2007-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256944
|
- |
|
article_directory
|
article_directory
|
PHP remote file inclusion vulnerability in index.php in Article Directory (Article Site Directory) allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.
|
NVD-CWE-Other
|
CVE-2007-4007
|
2017-09-29 10:29 |
2007-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256945
|
- |
|
entertainment_cms
|
entertainment_cms
|
Directory traversal vulnerability in custom.php in Entertainment Media Sharing CMS allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the pagename parameter.
|
CWE-22
Path Traversal
|
CVE-2007-4008
|
2017-09-29 10:29 |
2007-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256946
|
- |
|
php
|
php
|
The win32std extension in PHP 5.2.3 does not follow safe_mode and disable_functions restrictions, which allows remote attackers to execute arbitrary commands via the win_shell_execute function.
|
NVD-CWE-Other
|
CVE-2007-4010
|
2017-09-29 10:29 |
2007-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256947
|
- |
|
nessus
|
vulnerability_scanner
|
Directory traversal vulnerability in a certain ActiveX control in Nessus Vulnerability Scanner 3.0.6 allows remote attackers to delete arbitrary files via a .. (dot dot) in the argument to the delete…
|
CWE-22
Path Traversal
|
CVE-2007-4031
|
2017-09-29 10:29 |
2007-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256948
|
- |
|
nessus
|
vulnerability_scanner
|
Per http://secunia.com/advisories/26243/,
update to version 3.0.6.1 found at: http://www.nessus.org/download/
|
CWE-22
Path Traversal
|
CVE-2007-4031
|
2017-09-29 10:29 |
2007-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256949
|
- |
|
crystal_reality_llc
|
crystalplayer_pro
|
Buffer overflow in CrystalPlayer Pro 1.98 allows user-assisted remote attackers to execute arbitrary code via a long string in a .mls Playlist file.
|
NVD-CWE-Other
|
CVE-2007-4032
|
2017-09-29 10:29 |
2007-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256950
|
- |
|
joomla
|
pony_gallery
|
SQL injection vulnerability in index.php in the Pony Gallery (com_ponygallery) 1.5 and earlier component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter.
|
NVD-CWE-Other
|
CVE-2007-4046
|
2017-09-29 10:29 |
2007-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|