|
283791
|
- |
|
creamotion
|
creamotion
|
Multiple PHP remote file inclusion vulnerabilities in CMS Creamotion allow remote attackers to execute arbitrary PHP code via a URL in the cfg[document_uri] parameter to (1) _administration/securite.…
|
CWE-94
Code Injection
|
CVE-2007-5298
|
2018-10-16 06:42 |
2007-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283792
|
- |
|
alsaplayer
|
alsaplayer
|
Buffer overflow in the vorbis_stream_info function in input/vorbis/vorbis_engine.c (aka the vorbis input plugin) in AlsaPlayer before 0.99.80-rc3 allows remote attackers to execute arbitrary code via…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5301
|
2018-10-16 06:42 |
2007-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283793
|
- |
|
snewscms
|
snewscms_rus
|
Cross-site scripting (XSS) vulnerability in news_page.php in SnewsCMS Rus 2.1 allows remote attackers to inject arbitrary web script or HTML via the page_id parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2007-5303
|
2018-10-16 06:42 |
2007-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283794
|
- |
|
yannick_tanguy
|
else_if_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in ELSEIF CMS Beta 0.6 allow remote attackers to inject arbitrary web script or HTML via the (1) repertimage parameter to utilisateurs/vousetesbann…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5304
|
2018-10-16 06:42 |
2007-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283795
|
- |
|
yannick_tanguy
|
else_if_cms
|
Multiple PHP remote file inclusion vulnerabilities in ELSEIF CMS Beta 0.6 allow remote attackers to execute arbitrary PHP code via a URL in the (1) contenus parameter to (a) contenus.php; the (2) tpe…
|
CWE-94
Code Injection
|
CVE-2007-5305
|
2018-10-16 06:42 |
2007-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283796
|
- |
|
yannick_tanguy
|
else_if_cms
|
ELSEIF CMS Beta 0.6 allows remote attackers to obtain sensitive information (full path) via unspecified vectors to utilisateurs/votesresultats.php.
|
CWE-22
Path Traversal
|
CVE-2007-5306
|
2018-10-16 06:42 |
2007-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283797
|
- |
|
yannick_tanguy
|
else_if_cms
|
ELSEIF CMS Beta 0.6 does not properly unset variables when the input data includes a numeric parameter with a value matching an alphanumeric parameter's hash value, which allows remote attackers to e…
|
CWE-94
Code Injection
|
CVE-2007-5307
|
2018-10-16 06:42 |
2007-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283798
|
- |
|
torrenttrader
|
torrenttrader
|
Directory traversal vulnerability in backend/admin-functions.php in TorrentTrader Classic Edition 1.07 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the s…
|
CWE-22
Path Traversal
|
CVE-2007-5311
|
2018-10-16 06:42 |
2007-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283799
|
- |
|
torrenttrader
|
torrenttrader
|
Cross-site scripting (XSS) vulnerability in TorrentTrader Classic 1.07 allows remote attackers to inject arbitrary web script or HTML via the (1) color parameter to pjirc/css.php and the (2) cat para…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5312
|
2018-10-16 06:42 |
2007-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283800
|
- |
|
mozilla
|
firefox seamonkey
|
Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5 can hide the window's titlebar when displaying XUL markup language documents, which makes it easier for remote attackers to conduct phishing …
|
CWE-16
Configuration
|
CVE-2007-5334
|
2018-10-16 06:42 |
2007-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|