258021
|
- |
|
selinux
|
setroubleshoot
|
Cross-site scripting (XSS) vulnerability in setroubleshoot 2.0.5 allows local users to inject arbitrary web script or HTML via a crafted (1) file or (2) process name, which triggers an Access Vector …
|
CWE-79
Cross-site Scripting
|
CVE-2007-5496
|
2017-09-29 10:29 |
2008-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258022
|
- |
|
linux
|
linux_kernel
|
The Xen hypervisor block backend driver for Linux kernel 2.6.18, when running on a 64-bit host with a 32-bit paravirtualized guest, allows local privileged users in the guest OS to cause a denial of …
|
CWE-399
Resource Management Errors
|
CVE-2007-5498
|
2017-09-29 10:29 |
2008-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258023
|
- |
|
limesurvey
|
limesurvey
|
PHP remote file inclusion vulnerability in classes/core/language.php in LimeSurvey 1.5.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the rootdir parameter.
|
CWE-94
Code Injection
|
CVE-2007-5573
|
2017-09-29 10:29 |
2007-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258024
|
- |
|
phpdj
|
phpdj
|
PHP remote file inclusion vulnerability in djpage.php in PHPDJ 0.5 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.
|
CWE-94
Code Injection
|
CVE-2007-5574
|
2017-09-29 10:29 |
2007-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258025
|
- |
|
cisco
|
ip_phone_7940
|
Cisco IP Phone 7940 with firmware P0S3-08-7-00 allows remote attackers to cause a denial of service ("486 Busy" responses or device reboot) via a sequence of SIP INVITE transactions in which the Requ…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5583
|
2017-09-29 10:29 |
2007-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258026
|
- |
|
awzmb
|
awzmb
|
Multiple PHP remote file inclusion vulnerabilities in awzMB 4.2 beta 1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the Setting[OPT_includepath] parameter to (1) admi…
|
CWE-94
Code Injection
|
CVE-2007-5592
|
2017-09-29 10:29 |
2007-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258027
|
- |
|
artmedic_webdesign
|
artmedic_cms
|
Incomplete blacklist vulnerability in index.php in Artmedic CMS 3.4 and earlier allows remote attackers to execute arbitrary PHP code via a (1) UNC share pathname, or a (2) ftps, (3) ssh2.sftp, or (4…
|
CWE-94
Code Injection
|
CVE-2007-5600
|
2017-09-29 10:29 |
2007-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258028
|
- |
|
zehnet
|
zz_flashchat
|
Directory traversal vulnerability in admin/inc/help.php in ZZ:FlashChat 3.1 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the file parameter.
|
CWE-22
Path Traversal
|
CVE-2007-5620
|
2017-09-29 10:29 |
2007-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258029
|
- |
|
socketmail
|
socketmail
|
PHP remote file inclusion vulnerability in content/fnc-readmail3.php in SocketMail 2.2.8 allows remote attackers to execute arbitrary PHP code via a URL in the __SOCKETMAIL_ROOT parameter.
|
CWE-94
Code Injection
|
CVE-2007-5627
|
2017-09-29 10:29 |
2007-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258030
|
- |
|
towels
|
towels
|
PHP remote file inclusion vulnerability in src/scripture.php in The Online Web Library Site (TOWels) 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the pageHeaderFile paramete…
|
CWE-94
Code Injection
|
CVE-2007-5628
|
2017-09-29 10:29 |
2007-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|