264341
|
- |
|
bitflu
|
bitflu
|
Unspecified vulnerability in the StorageFarabDb module in Bitflu before 0.42 allows user-assisted remote attackers to create or append data to arbitrary files via a crafted .torrent file.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-6636
|
2017-08-8 10:29 |
2008-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264342
|
- |
|
sourceforge
|
creammonkey greasekit
|
Creammonkey 0.9 through 1.1 and GreaseKit 1.2 through 1.3 does not properly prevent access to dangerous functions, which allows remote attackers to read the configuration, modify the configuration, o…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-6640
|
2017-08-8 10:29 |
2008-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264343
|
- |
|
phpcredo
|
phcdownload
|
Cross-site scripting (XSS) vulnerability in search.php in PHCDownload 1.1.0 allows remote attackers to inject arbitrary web script or HTML via the string parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2007-6669
|
2017-08-8 10:29 |
2008-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264344
|
- |
|
makale_scripti
|
makale_scripti
|
Cross-site scripting (XSS) vulnerability in Makale Scripti allows remote attackers to inject arbitrary web script or HTML via the ara parameter to the default URI under Ara/ in a search action.
|
CWE-79
Cross-site Scripting
|
CVE-2007-6673
|
2017-08-8 10:29 |
2008-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264345
|
- |
|
rapidshare
|
database
|
Cross-site scripting (XSS) vulnerability in Default.asp in RapidShare Database allows remote attackers to inject arbitrary web script or HTML via the Arayalim parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2007-6674
|
2017-08-8 10:29 |
2008-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264346
|
- |
|
menalto
|
gallery
|
Unspecified vulnerability in the Installation application in Menalto Gallery before 2.2.4 has unknown impact and attack vectors related to "web-accessibility protection of the storage folder."
|
NVD-CWE-noinfo
|
CVE-2007-6688
|
2017-08-8 10:29 |
2008-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264347
|
- |
|
drake_team
|
drake_cms
|
Cross-site scripting (XSS) vulnerability in index.php in Drake CMS 0.4.9 allows remote attackers to inject arbitrary web script or HTML via the option parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2007-6695
|
2017-08-8 10:29 |
2008-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264348
|
- |
|
novell
|
client
|
Multiple stack-based buffer overflows in the Spooler service (nwspool.dll) in Novell Client 4.91 SP4 for Windows allow remote attackers to execute arbitrary code via long arguments to multiple unspec…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-6701
|
2017-08-8 10:29 |
2008-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264349
|
- |
|
synce
|
vdccm
|
Unspecified vulnerability in vdccm before 0.10.1 in SynCE (SynCE-dccm) might allow attackers to cause a denial of service via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2007-6703
|
2017-08-8 10:29 |
2008-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264350
|
- |
|
freewebshop
|
freewebshop
|
Unspecified vulnerability in customer.php in FreeWebshop.org 2.2.5, 2.2.6 and 2.2.7WIP1/2 allows remote attackers to gain administrator privileges via unknown vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-6711
|
2017-08-8 10:29 |
2008-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|