276711
|
- |
|
dibbler
|
dibbler
|
Dibbler 0.6.0 on Linux uses weak world-writable permissions for unspecified files in /var/lib/dibbler, which has unknown impact and local attack vectors.
|
CWE-200
Information Exposure
|
CVE-2007-5028
|
2008-09-6 06:29 |
2007-09-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
276712
|
- |
|
egroupware
|
egroupware
|
Multiple cross-site scripting (XSS) vulnerabilities in eGroupWare 1.4.001 allow remote attackers to inject arbitrary web script or HTML via the cat_data[color] parameter to (1) preferences/inc/class.…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5091
|
2008-09-6 06:29 |
2007-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
276713
|
- |
|
id3lib
|
id3lib
|
The RenderV2ToFile function in tag_file.cpp in id3lib (aka libid3) 3.8.3 allows local users to overwrite arbitrary files via a symlink attack on a temporary file whose name is constructed from the na…
|
NVD-CWE-Other
|
CVE-2007-4460
|
2008-09-6 06:28 |
2007-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
276714
|
- |
|
po4a
|
po4a
|
lib/Locale/Po4a/Po.pm in po4a before 0.32 allows local users to overwrite arbitrary files via a symlink attack on the gettextization.failed.po temporary file.
|
NVD-CWE-Other
|
CVE-2007-4462
|
2008-09-6 06:28 |
2007-08-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
276715
|
- |
|
sshkeychain
|
sshkeychain
|
Unspecified vulnerability in TunnelRunner in SSHKeychain before 0.8.2 beta, and possibly later versions, allows local users to gain privileges via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2007-4500
|
2008-09-6 06:28 |
2007-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
276716
|
- |
|
sshkeychain
|
sshkeychain
|
Unspecified vulnerability in PassphraseRequester in SSHKeychain before 0.8.2 beta allows attackers to obtain sensitive information (passwords) via unknown vectors, related to "poor protection."
|
NVD-CWE-Other
|
CVE-2007-4501
|
2008-09-6 06:28 |
2007-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
276717
|
- |
|
vavoom
|
vavoom
|
Buffer overflow in the VThinker::BroadcastPrintf function in p_thinker.cpp in Vavoom 1.24 and earlier allows remote attackers to execute arbitrary code via (1) a long string in a chat message and pos…
|
NVD-CWE-Other
|
CVE-2007-4534
|
2008-09-6 06:28 |
2007-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
276718
|
- |
|
vavoom
|
vavoom
|
The VStr::Resize function in str.cpp in Vavoom 1.24 and earlier allows remote attackers to cause a denial of service (daemon crash) via a string with a negative NewLen value within a certain UDP pack…
|
NVD-CWE-Other
|
CVE-2007-4535
|
2008-09-6 06:28 |
2007-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
276719
|
- |
|
apache
|
geronimo
|
The login method in LoginModule implementations in Apache Geronimo 2.0 does not throw FailedLoginException for failed logins, which allows remote attackers to bypass authentication requirements, depl…
|
CWE-287
Improper Authentication
|
CVE-2007-4548
|
2008-09-6 06:28 |
2007-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
276720
|
- |
|
novell
|
groupwise_webaccess
|
Cross-site scripting (XSS) vulnerability in the webacc servlet in Novell GroupWise 6.5 WebAccess allows remote attackers to inject arbitrary web script or HTML via the User.Id parameter, as demonstra…
|
CWE-79
Cross-site Scripting
|
CVE-2007-4557
|
2008-09-6 06:28 |
2007-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|