|
283731
|
- |
|
phpbb_wordsearch
|
phpbb_wordsearch
|
PHP remote file inclusion vulnerability in admin_rebuild_search.php in phpbb_wordsearch allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
|
NVD-CWE-Other
|
CVE-2007-1048
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283732
|
- |
|
abledesign
|
mycalendar
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in AbleDesign MyCalendar allow remote attackers to inject arbitrary web script or HTML via (1) the go parameter, (2) the keyword param…
|
CWE-79
Cross-site Scripting
|
CVE-2007-1050
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283733
|
- |
|
comodo
|
comodo_firewall_pro
|
Comodo Firewall Pro (formerly Comodo Personal Firewall) 2.4.17.183 and earlier uses a weak cryptographic hashing function (CRC32) to identify trusted modules, which allows local users to bypass secur…
|
NVD-CWE-Other
|
CVE-2007-1051
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283734
|
- |
|
mediawiki
|
mediawiki
|
Cross-site scripting (XSS) vulnerability in the AJAX features in index.php in MediaWiki 1.6.x through 1.9.2, when $wgUseAjax is enabled, allows remote attackers to inject arbitrary web script or HTML…
|
NVD-CWE-Other
|
CVE-2007-1054
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283735
|
- |
|
mediawiki
|
mediawiki
|
Successful exploitation requires that "$wgUseAjax" is enabled
|
NVD-CWE-Other
|
CVE-2007-1054
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283736
|
- |
|
vmware
|
workstation
|
VMware Workstation 5.5.3 build 34685 does not provide per-user restrictions on certain privileged actions, which allows local users to perform restricted operations such as changing system time, acce…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-1056
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283737
|
- |
|
interspire
|
sendstudio
|
Multiple PHP remote file inclusion vulnerabilities in Interspire SendStudio 2004.14 and earlier, when register_globals and allow_fopenurl are enabled, allow remote attackers to execute arbitrary PHP …
|
NVD-CWE-Other
|
CVE-2007-1060
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283738
|
- |
|
francisco_burzi
|
php-nuke
|
SQL injection vulnerability in index.php in Francisco Burzi PHP-Nuke 8.0 Final and earlier, when the "HTTP Referers" block is enabled, allows remote attackers to execute arbitrary SQL commands via th…
|
NVD-CWE-Other
|
CVE-2007-1061
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283739
|
- |
|
vmware
|
workstation
|
The memory management in VMware Workstation before 5.5.4 allows attackers to cause a denial of service (Windows virtual machine crash) by triggering certain general protection faults (GPF).
|
NVD-CWE-Other
|
CVE-2007-1069
|
2018-10-17 01:36 |
2007-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283740
|
- |
|
trend_micro
|
serverprotect
|
Multiple stack-based buffer overflows in Trend Micro ServerProtect for Windows and EMC 5.58, and for Network Appliance Filer 5.61 and 5.62, allow remote attackers to execute arbitrary code via crafte…
|
NVD-CWE-Other
|
CVE-2007-1070
|
2018-10-17 01:36 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|