264071
|
- |
|
horde
|
groupware
|
Unspecified vulnerability in the calendar component in Horde Groupware Webmail Edition before 1.0, and Groupware before 1.0, allows remote attackers to include certain files via unspecified vectors. …
|
NVD-CWE-Other
|
CVE-2007-0579
|
2017-07-29 10:30 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264072
|
- |
|
http_commander
|
http_commander
|
Multiple cross-site scripting (XSS) vulnerabilities in HTTP Commander 6.0, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) LogoffMessage parameter to l…
|
NVD-CWE-Other
|
CVE-2007-0583
|
2017-07-29 10:30 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264073
|
- |
|
cmsmadesimple
|
cms_made_simple
|
Cross-site scripting (XSS) vulnerability in the mailform feature in CMSimple 2.7 fix1 allows remote attackers to inject arbitrary web script or HTML via the sender parameter. NOTE: The provenance of…
|
NVD-CWE-Other
|
CVE-2007-0610
|
2017-07-29 10:30 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264074
|
- |
|
hitachi
|
hibun_advanced_edition_server jpi_hibun_advanced_edition_server
|
Unspecified vulnerability in Hitachi JP1/HIBUN Advanced Edition Management Server and Log Server before 20070124 allows remote attackers to cause a denial of service (application stop) via unexpected…
|
NVD-CWE-Other
|
CVE-2007-0615
|
2017-07-29 10:30 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264075
|
- |
|
zenphoto
|
zenphoto
|
Directory traversal vulnerability in zen/template-functions.php in zenphoto 1.0.4 up to 1.0.6 allows remote attackers to list arbitrary directories via ".." sequences in the album parameter to index.…
|
NVD-CWE-Other
|
CVE-2007-0616
|
2017-07-29 10:30 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264076
|
- |
|
earthlink
|
total_access
|
The SpamBlocker.dll ActiveX control in Earthlink TotalAccess is marked "safe for scripting," which allows remote attackers to add arbitrary e-mail addresses and domains to the spam blocker whitelist …
|
NVD-CWE-Other
|
CVE-2007-0617
|
2017-07-29 10:30 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264077
|
- |
|
earthlink
|
total_access
|
Medium complexity because phishing attack
|
NVD-CWE-Other
|
CVE-2007-0617
|
2017-07-29 10:30 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264078
|
- |
|
ibm
|
aix
|
Unspecified vulnerability in (1) pop3d, (2) pop3ds, (3) imapd, and (4) imapds in IBM AIX 5.3.0 has unspecified impact and attack vectors, involving an "authentication vulnerability."
|
NVD-CWE-Other
|
CVE-2007-0618
|
2017-07-29 10:30 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264079
|
- |
|
nomachine
|
nx_server
|
nxconfigure.sh in NoMachine NX Server before 2.1.0-18 does not validate the invoking user, which allows local users to modify server configuration keys in /usr/NX/etc/server.cfg, resulting in an unsp…
|
NVD-CWE-Other
|
CVE-2007-0625
|
2017-07-29 10:30 |
2007-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264080
|
- |
|
michael_still
|
gtalkbot
|
Michael Still gtalkbot before 1.2 places username and password arguments on the command line, which allows local users to obtain sensitive information by listing the process.
|
NVD-CWE-Other
|
CVE-2007-0627
|
2017-07-29 10:30 |
2007-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|