|
283611
|
- |
|
symantec
|
client_security norton_antispam norton_antivirus norton_internet_security norton_personal_firewall norton_system_works
|
The SymTDI device driver (SYMTDI.SYS) in Symantec Norton Personal Firewall 2006 9.1.1.7 and earlier, Internet Security 2005 and 2006, AntiVirus Corporate Edition 3.0.x through 10.1.x, and other Norto…
|
CWE-20
Improper Input Validation
|
CVE-2007-1476
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283612
|
- |
|
k5n
|
webcalendar
|
Multiple PHP remote file inclusion vulnerabilities in WebCalendar 0.9.45 allow remote attackers to execute arbitrary PHP code via a URL in the includedir parameter to (1) login.php, (2) get_reminders…
|
CWE-94
Code Injection
|
CVE-2007-1483
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283613
|
- |
|
carbonize
|
lazarus_guestbook
|
PHP remote file inclusion vulnerability in template.class.php in Carbonize Lazarus Guestbook before 1.7.3 allows remote attackers to execute arbitrary PHP code via a URL in the include_path parameter…
|
NVD-CWE-Other
|
CVE-2007-1486
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283614
|
- |
|
carbonize
|
lazarus_guestbook
|
This vulnerability has been addressed by the vendor with a product update:
http://carbonize.co.uk/Lazarus/downloads.php
|
NVD-CWE-Other
|
CVE-2007-1486
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283615
|
- |
|
nukescripts
|
nukesentinel
|
nukesentinel.php in NukeSentinel 2.5.06 and earlier uses a permissive regular expression to validate an IP address, which allows remote attackers to execute arbitrary SQL commands via the Client-IP H…
|
NVD-CWE-Other
|
CVE-2007-1493
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283616
|
- |
|
symantec
|
norton_personal_firewall
|
The \Device\SymEvent driver in Symantec Norton Personal Firewall 2006 9.1.1.7, and possibly other products using symevent.sys 12.0.0.20, allows local users to cause a denial of service (system crash)…
|
NVD-CWE-Other
|
CVE-2007-1495
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283617
|
- |
|
microsoft
|
ie
|
Microsoft Internet Explorer 7.0 on Windows XP and Vista allows remote attackers to conduct phishing attacks and possibly execute arbitrary code via a res: URI to navcancl.htm with an arbitrary URL as…
|
CWE-79
Cross-site Scripting
|
CVE-2007-1499
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283618
|
- |
|
rhapsody_irc
|
rhapsody_irc
|
Multiple buffer overflows in Rhapsody IRC 0.28b allow remote attackers to execute arbitrary code via a (1) long command, (2) long server argument to the (a) connect or (b) server commands, (3) long n…
|
NVD-CWE-Other
|
CVE-2007-1502
|
2018-10-17 01:38 |
2007-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283619
|
- |
|
rhapsody_irc
|
rhapsody_irc
|
Multiple format string vulnerabilities in comm.c in Rhapsody IRC 0.28b allow remote attackers to execute arbitrary code via format string specifiers to the create_ctcp_message function using the mess…
|
NVD-CWE-Other
|
CVE-2007-1503
|
2018-10-17 01:38 |
2007-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283620
|
- |
|
oracle
|
application_server_portal
|
Cross-site scripting (XSS) vulnerability in PORTAL.wwv_main.render_warning_screen in the Oracle Portal 10g allows remote attackers to inject arbitrary web script or HTML via the (1) p_oldurl and (2) …
|
NVD-CWE-Other
|
CVE-2007-1506
|
2018-10-17 01:38 |
2007-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|