264001
|
- |
|
adobe
|
coldfusion
|
Adobe ColdFusion MX 7 for Linux and Solaris uses insecure permissions for certain scripts and directories, which allows local users to execute arbitrary code or obtain sensitive information via the (…
|
NVD-CWE-Other
|
CVE-2007-1874
|
2017-07-29 10:31 |
2007-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264002
|
- |
|
kaspersky_lab
|
kaspersky_anti-virus kaspersky_internet_security
|
The StartUploading function in KL.SysInfo ActiveX control (AxKLSysInfo.dll) in Kaspersky Anti-Virus 6.0 and Internet Security 6.0 before Maintenance Pack 2 build 6.0.2.614 allows remote attackers to …
|
NVD-CWE-Other
|
CVE-2007-1879
|
2017-07-29 10:31 |
2007-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264003
|
- |
|
kaspersky_lab
|
kaspersky_anti-virus kaspersky_internet_security
|
Integer overflow in the _NtSetValueKey function in klif.sys in Kaspersky Anti-Virus, Anti-Virus for Workstations, Anti-Virus for File Server 6.0, and Internet Security 6.0 before Maintenance Pack 2 b…
|
NVD-CWE-Other
|
CVE-2007-1880
|
2017-07-29 10:31 |
2007-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264004
|
- |
|
kaspersky_lab
|
kaspersky_anti-virus kaspersky_internet_security
|
The vendor has addressed this vulnerability within Maintenance Pack 2. More information is available from the following link:
http://www.kaspersky.com/technews?id=203038693
|
NVD-CWE-Other
|
CVE-2007-1880
|
2017-07-29 10:31 |
2007-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264005
|
- |
|
hp
|
mercury_quality_center
|
qcbin/servlet/tdservlet/TDAPI_GeneralWebTreatment in HP Mercury Quality Center 9.0 build 9.1.0.4352 allows remote authenticated users to execute arbitrary SQL commands via the RunQuery method.
|
NVD-CWE-Other
|
CVE-2007-1882
|
2017-07-29 10:31 |
2007-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264006
|
- |
|
php
|
php
|
Integer overflow in the str_replace function in PHP 4.4.5 and PHP 5.2.1 allows context-dependent attackers to have an unknown impact via a single character search string in conjunction with a single …
|
NVD-CWE-Other
|
CVE-2007-1886
|
2017-07-29 10:31 |
2007-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264007
|
- |
|
php
|
php
|
Integer signedness error in the _zend_mm_alloc_int function in the Zend Memory Manager in PHP 5.2.0 allows remote attackers to execute arbitrary code via a large emalloc request, related to an incorr…
|
NVD-CWE-Other
|
CVE-2007-1889
|
2017-07-29 10:31 |
2007-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264008
|
- |
|
wordpress
|
wordpress
|
xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows remote authenticated users with the contributor role to bypass intended access restrictions and invoke the publish_posts functiona…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-1893
|
2017-07-29 10:31 |
2007-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264009
|
- |
|
aol
|
icq instant_messenger
|
Directory traversal vulnerability in AOL Instant Messenger (AIM) 5.9 and earlier, and ICQ 5.1 and probably earlier, allows user-assisted remote attackers to write files to arbitrary locations via a .…
|
NVD-CWE-Other
|
CVE-2007-1904
|
2017-07-29 10:31 |
2007-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264010
|
- |
|
pineapple_technologies
|
quizshock
|
Cross-site scripting (XSS) vulnerability in auth.php in Pineapple Technologies QuizShock 1.6.1 and earlier allows remote attackers to inject arbitrary web script or HTML via encoded special character…
|
CWE-79
Cross-site Scripting
|
CVE-2007-1905
|
2017-07-29 10:31 |
2007-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|