|
283751
|
- |
|
coppermine
|
coppermine_photo_gallery
|
SQL injection vulnerability in thumbnails.php in Coppermine Photo Gallery (CPG) 1.3.x allows remote authenticated users to execute arbitrary SQL commands via a cpg131_fav cookie. NOTE: it was later …
|
NVD-CWE-Other
|
CVE-2007-1107
|
2018-10-17 01:36 |
2007-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283752
|
- |
|
phpwebgallery
|
phpwebgallery
|
Multiple cross-site scripting (XSS) vulnerabilities in Phpwebgallery 1.4.1 allow remote attackers to inject arbitrary web script or HTML via the (1) login or (2) mail_address field in Register.php, o…
|
CWE-79
Cross-site Scripting
|
CVE-2007-1109
|
2018-10-17 01:36 |
2007-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283753
|
- |
|
activecalendar
|
activecalendar
|
Directory traversal vulnerability in data/showcode.php in ActiveCalendar 1.2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter.
|
NVD-CWE-Other
|
CVE-2007-1110
|
2018-10-17 01:36 |
2007-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283754
|
- |
|
activecalendar
|
activecalendar
|
Multiple cross-site scripting (XSS) vulnerabilities in ActiveCalendar 1.2.0 allow remote attackers to inject arbitrary web script or HTML via the css parameter to (1) flatevents.php, (2) js.php, (3) …
|
NVD-CWE-Other
|
CVE-2007-1111
|
2018-10-17 01:36 |
2007-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283755
|
- |
|
kaspersky_lab
|
kaspersky_anti-virus kaspersky_internet_security
|
Kaspersky Anti-Virus 6.0 and Internet Security 6.0 exposes unsafe methods in the (a) AXKLPROD60Lib.KAV60Info (AxKLProd60.dll) and (b) AXKLSYSINFOLib.SysInfo (AxKLSysInfo.dll) ActiveX controls, which …
|
NVD-CWE-Other
|
CVE-2007-1112
|
2018-10-17 01:36 |
2007-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283756
|
- |
|
microsoft
|
ie
|
The child frames in Microsoft Internet Explorer 7 inherit the default charset from the parent window when a charset is not specified in an HTTP Content-Type header or META tag, which allows remote at…
|
NVD-CWE-Other
|
CVE-2007-1114
|
2018-10-17 01:36 |
2007-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283757
|
- |
|
opera
|
opera_browser
|
The child frames in Opera 9 before 9.20 inherit the default charset from the parent window when a charset is not specified in an HTTP Content-Type header or META tag, which allows remote attackers to…
|
CWE-79
Cross-site Scripting
|
CVE-2007-1115
|
2018-10-17 01:36 |
2007-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283758
|
- |
|
mozilla
|
firefox
|
The CheckLoadURI function in Mozilla Firefox 1.8 lists the about: URI as a ChromeProtocol and can be loaded via JavaScript, which allows remote attackers to obtain sensitive information by querying t…
|
CWE-200
Information Exposure
|
CVE-2007-1116
|
2018-10-17 01:36 |
2007-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283759
|
- |
|
mozilla
|
firefox
|
Comments in the hyperlinks also pointed to Firefox 2.0.0.2 containing the vulnerability.
|
CWE-200
Information Exposure
|
CVE-2007-1116
|
2018-10-17 01:36 |
2007-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283760
|
- |
|
xeroxer
|
simple_one-file_gallery
|
Directory traversal vulnerability in gallery.php in XeroXer Simple one-file gallery allows remote attackers to read arbitrary files via a .. (dot dot) in the f parameter.
|
NVD-CWE-Other
|
CVE-2007-1124
|
2018-10-17 01:36 |
2007-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|