255671
|
- |
|
webspell
|
webspell
|
Successful exploitation e.g. allows retrieval of password hashes, but requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2007-1019
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255672
|
- |
|
xfairguy
|
codeavalanche_news
|
SQL injection vulnerability in inc_listnews.asp in CodeAvalanche News 1.x allows remote attackers to execute arbitrary SQL commands via the CAT_ID parameter.
|
NVD-CWE-Other
|
CVE-2007-1021
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255673
|
- |
|
snitz_communications
|
snitz_forums_2000
|
SQL injection vulnerability in pop_profile.asp in Snitz Forums 2000 3.1 SR4 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2007-1023
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255674
|
- |
|
virtualsystem
|
vs-link-partner
|
PHP remote file inclusion vulnerability in inc/functions_inc.php in VS-Link-Partner 2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the gb_pfad, or possibly script_…
|
NVD-CWE-Other
|
CVE-2007-1025
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255675
|
- |
|
spoonlabs
|
vivvo_article_management_cms
|
Directory traversal vulnerability in include/db_conn.php in SpoonLabs Vivvo Article Management CMS 3.4 allows remote attackers to include and execute arbitrary local files via the root parameter.
|
CWE-22
Path Traversal
|
CVE-2007-1031
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255676
|
- |
|
xpression_news
|
xpression_news
|
Directory traversal vulnerability in archives.php in Xpression News (X-News) 1.0.1 allows remote attackers to include arbitrary files or obtain sensitive information via a .. (dot dot) in the xnews-t…
|
NVD-CWE-Other
|
CVE-2007-1040
|
2017-10-11 10:31 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255677
|
- |
|
sandh
|
news_rover
|
Multiple stack-based buffer overflows in S&H Computer Systems News Rover 12.1 Rev 1 allow remote attackers to execute arbitrary code via a .nzb file with a long (1) group or (2) subject string.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-1041
|
2017-10-11 10:31 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255678
|
- |
|
nortel
|
net_direct_client
|
The Net Direct client for Linux before 6.0.5 in Nortel Application Switch 2424, VPN 3050 and 3070, and SSL VPN Module 1000 extracts and executes files with insecure permissions, which allows local us…
|
NVD-CWE-Other
|
CVE-2007-1057
|
2017-10-11 10:31 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255679
|
- |
|
dji
|
newsbin_pro
|
Multiple buffer overflows in NewsBin Pro 5.33 and NewsBin Pro 4.x allow user-assisted remote attackers to execute arbitrary code via a long (1) DataPath or (2) DownloadPath attributed in a (a) NBI fi…
|
NVD-CWE-Other
|
CVE-2007-1074
|
2017-10-11 10:31 |
2007-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255680
|
- |
|
dji
|
newsbin_pro
|
Successful exploitation allows execution of arbitrary code, but requires that the user is tricked into e.g. loading a malicious NBI configuration file.
|
NVD-CWE-Other
|
CVE-2007-1074
|
2017-10-11 10:31 |
2007-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|