|
284041
|
- |
|
headstart_solutions
|
deskpro
|
Multiple cross-site scripting (XSS) vulnerabilities in Headstart Solutions DeskPRO 3.0.2 allow remote authenticated users to inject arbitrary web script or HTML via unspecified parameters to (1) tech…
|
NVD-CWE-Other
|
CVE-2007-4412
|
2018-10-16 06:35 |
2007-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284042
|
- |
|
headstart_solutions
|
deskpro
|
Direct static code injection vulnerability in admincp/user_help.php in Headstart Solutions DeskPRO 3.0.2 allows remote authenticated users to inject arbitrary PHP code into an unspecified file via a …
|
NVD-CWE-Other
|
CVE-2007-4413
|
2018-10-16 06:35 |
2007-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284043
|
- |
|
cisco
|
vpn_client
|
Cisco VPN Client on Windows before 5.0.01.0600, and the 5.0.01.0600 InstallShield (IS) release, uses weak permissions for cvpnd.exe (Modify granted to Interactive Users), which allows local users to …
|
NVD-CWE-Other
|
CVE-2007-4415
|
2018-10-16 06:35 |
2007-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284044
|
- |
|
olate
|
olatedownload
|
Admin.php in Olate Download (od) 3.4.1 uses an MD5 hash of the admin username, user id, and group id, to compose the OD3_AutoLogin authentication cookie, which makes it easier for remote attackers to…
|
CWE-287
Improper Authentication
|
CVE-2007-4419
|
2018-10-16 06:35 |
2007-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284045
|
- |
|
olate
|
olatedownload
|
SQL injection vulnerability in Admin.php in Olate Download (od) 3.4.1 allows remote attackers to execute arbitrary SQL commands via an OD3_AutoLogin cookie.
|
NVD-CWE-Other
|
CVE-2007-4421
|
2018-10-16 06:35 |
2007-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284046
|
- |
|
ibm
|
db2_universal_database
|
Stack-based buffer overflow in the AUTH_LIST_GROUPS_FOR_AUTHID function in IBM DB2 UDB 9.1 before Fixpak 3 allows attackers to cause a denial of service and possibly execute arbitrary code via a long…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-4423
|
2018-10-16 06:35 |
2007-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284047
|
- |
|
apple
|
safari
|
Apple Safari for Windows 3.0.3 and earlier does not prompt the user before downloading a file, which allows remote attackers to download arbitrary files to the desktop of a client system via certain …
|
NVD-CWE-Other
|
CVE-2007-4424
|
2018-10-16 06:35 |
2007-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284048
|
- |
|
live_for_speed
|
live_for_speed
|
Multiple buffer overflows in Live for Speed (LFS) demo, S1, and S2 allow remote authenticated users to (1) cause a denial of service (server crash) and probably execute arbitrary code via an ID 3 pac…
|
NVD-CWE-Other
|
CVE-2007-4425
|
2018-10-16 06:35 |
2007-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284049
|
- |
|
live_for_speed
|
live_for_speed
|
Live for Speed (LFS) S1 and S2 allows remote attackers to cause a denial of service (server crash) via (1) a certain 0x00 byte in a pre-login ID 3 packet, which triggers a NULL dereference; or (2) a …
|
NVD-CWE-Other
|
CVE-2007-4426
|
2018-10-16 06:35 |
2007-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284050
|
- |
|
skype_technologies
|
skype
|
Unspecified vulnerability in Skype allows remote attackers to cause a denial of service (server hang) via unknown vectors related to sending long URIs, as claimed to be actively exploited on 20070817…
|
NVD-CWE-noinfo
|
CVE-2007-4429
|
2018-10-16 06:35 |
2007-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|