|
283591
|
- |
|
apop_protocol
|
apop_protocol
|
The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions. NOTE: this design-level …
|
NVD-CWE-Other
|
CVE-2007-1558
|
2018-10-17 01:39 |
2007-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283592
|
- |
|
asterisk
|
asterisk
|
The channel driver in Asterisk before 1.2.17 and 1.4.x before 1.4.2 allows remote attackers to cause a denial of service (crash) via a SIP INVITE message with an SDP containing one valid and one inva…
|
NVD-CWE-Other
|
CVE-2007-1561
|
2018-10-17 01:39 |
2007-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283593
|
- |
|
radical_designs
|
activist_mobilization_platform
|
PHP remote file inclusion vulnerability in includes/base.php in Radical Designs Activist Mobilization Platform (AMP) 3.2, when register_globals is enabled, allows remote attackers to execute arbitrar…
|
NVD-CWE-Other
|
CVE-2007-1571
|
2018-10-17 01:39 |
2007-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283594
|
- |
|
jelsoft
|
vbulletin
|
SQL injection vulnerability in admincp/attachment.php in Jelsoft vBulletin 3.6.5 allows remote authenticated administrators to execute arbitrary SQL commands via the "Attached Before" field.
|
CWE-89
SQL Injection
|
CVE-2007-1573
|
2018-10-17 01:39 |
2007-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283595
|
- |
|
phprojekt
|
phprojekt
|
Multiple SQL injection vulnerabilities in PHProjekt 5.2.0, when magic_quotes_gpc is disabled, allow remote authenticated users to execute arbitrary SQL commands via (1) unspecified vectors to the (a)…
|
NVD-CWE-Other
|
CVE-2007-1575
|
2018-10-17 01:39 |
2007-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283596
|
- |
|
phprojekt
|
phprojekt
|
Multiple cross-site scripting (XSS) vulnerabilities in PHProjekt 5.2.0, when magic_quotes_gpc is disabled, allow remote authenticated users to inject arbitrary web script or HTML via unspecified vect…
|
CWE-79
Cross-site Scripting
|
CVE-2007-1576
|
2018-10-17 01:39 |
2007-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283597
|
- |
|
linksys
|
wag200g wrt54gc
|
The Linksys WAG200G with firmware 1.01.01, WRT54GC 2 with firmware 1.00.7, and WRT54GC 1 with firmware 1.03.0 and earlier allow remote attackers to obtain sensitive information (passwords and configu…
|
NVD-CWE-Other
|
CVE-2007-1585
|
2018-10-17 01:39 |
2007-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283598
|
- |
|
zyxel
|
zynos
|
ZynOS 3.40 allows remote attackers to cause a denial of service (link restart) by sending a request for the name \M via the SMB Mail Slot Protocol.
|
NVD-CWE-Other
|
CVE-2007-1586
|
2018-10-17 01:39 |
2007-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283599
|
- |
|
trend_micro
|
trend_micro_antivirus
|
VsapiNT.sys in the Scan Engine 8.0 for Trend Micro AntiVirus 14.10.1041, and other products, allows remote attackers to cause a denial of service (kernel fault and system crash) via a crafted UPX fil…
|
NVD-CWE-Other
|
CVE-2007-1591
|
2018-10-17 01:39 |
2007-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283600
|
- |
|
asterisk
|
asterisk
|
The handle_response function in chan_sip.c in Asterisk before 1.2.17 and 1.4.x before 1.4.2 allows remote attackers to cause a denial of service (crash) via a SIP Response code 0 in a SIP packet.
|
NVD-CWE-Other
|
CVE-2007-1594
|
2018-10-17 01:39 |
2007-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|