|
283691
|
- |
|
wordpress
|
wordpress
|
WordPress 2.1.1, as downloaded from some official distribution sites during February and March 2007, contains an externally introduced backdoor that allows remote attackers to execute arbitrary comma…
|
CWE-20
Improper Input Validation
|
CVE-2007-1277
|
2018-10-17 01:37 |
2007-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283692
|
- |
|
wordpress
|
wordpress
|
This vulnerability is addressed in the following product update:
http://wordpress.org/development/2007/03/upgrade-212/
|
CWE-20
Improper Input Validation
|
CVE-2007-1277
|
2018-10-17 01:37 |
2007-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283693
|
- |
|
adobe
|
robohelp robohelp_server
|
Cross-site scripting (XSS) vulnerability in Adobe RoboHelp X5, 6, and Server 6 allows remote attackers to inject arbitrary web script or HTML via a URL after a # (hash) in the URL path, as demonstrat…
|
NVD-CWE-Other
|
CVE-2007-1280
|
2018-10-17 01:37 |
2007-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283694
|
- |
|
php
|
php
|
Integer overflow in PHP 4.4.4 and earlier allows remote context-dependent attackers to execute arbitrary code via a long string to the unserialize function, which triggers the overflow in the ZVAL re…
|
NVD-CWE-Other
|
CVE-2007-1286
|
2018-10-17 01:37 |
2007-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283695
|
- |
|
webmobo
|
wbnews
|
Multiple PHP remote file inclusion vulnerabilities in Webmobo WB News 1.4.1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the config[installdir] parameter to (1) comme…
|
NVD-CWE-Other
|
CVE-2007-1288
|
2018-10-17 01:37 |
2007-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283696
|
- |
|
tyger
|
bug_tracking_system
|
SQL injection vulnerability in ViewBugs.php in Tyger Bug Tracking System (TygerBT) 1.1.3 allows remote attackers to execute arbitrary SQL commands via the s parameter.
|
NVD-CWE-Other
|
CVE-2007-1289
|
2018-10-17 01:37 |
2007-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283697
|
- |
|
tyger
|
bug_tracking_system
|
Multiple cross-site scripting (XSS) vulnerabilities in Tyger Bug Tracking System (TygerBT) 1.1.3 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) Login.php and (…
|
NVD-CWE-Other
|
CVE-2007-1291
|
2018-10-17 01:37 |
2007-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283698
|
- |
|
rigter_portal_system
|
rigter_portal_system
|
SQL injection vulnerability in Rigter Portal System (RPS) 6.2, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the categoria parameter to the top-leve…
|
NVD-CWE-Other
|
CVE-2007-1293
|
2018-10-17 01:37 |
2007-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283699
|
- |
|
rrdbrowse
|
rrdbrowse
|
Directory traversal vulnerability in rb.cgi in RRDBrowse 1.6 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
|
NVD-CWE-Other
|
CVE-2007-1303
|
2018-10-17 01:37 |
2007-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283700
|
- |
|
kde
|
konqueror
|
ecma/kjs_html.cpp in KDE JavaScript (KJS), as used in Konqueror in KDE 3.5.5, allows remote attackers to cause a denial of service (crash) by accessing the content of an iframe with an ftp:// URI in …
|
CWE-399
Resource Management Errors
|
CVE-2007-1308
|
2018-10-17 01:37 |
2007-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|