|
283601
|
- |
|
inkscape
|
inkscape
|
Format string vulnerability in the whiteboard Jabber protocol in Inkscape before 0.45.1 allows user-assisted remote attackers to execute arbitrary code via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2007-1464
|
2018-10-17 01:38 |
2007-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283602
|
- |
|
sourceforge
|
wordperfect_document_importer-exporter
|
Integer overflow in the WP6GeneralTextPacket::_readContents function in WordPerfect Document importer/exporter (libwpd) before 0.8.9 allows user-assisted remote attackers to cause a denial of service…
|
CWE-189
Numeric Errors
|
CVE-2007-1466
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283603
|
- |
|
sourceforge
|
wordperfect_document_importer-exporter
|
This vulnerability has been addressed by the vendor through a product update: http://sourceforge.net/project/showfiles.php?group_id=62662
|
CWE-189
Numeric Errors
|
CVE-2007-1466
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283604
|
- |
|
ibm
|
rational_clearquest
|
Cross-site scripting (XSS) vulnerability in IBM Rational ClearQuest (CQ) Web 7.0.0.0 allows remote attackers to inject arbitrary web script or HTML via an attachment to a defect log entry.
|
CWE-79
Cross-site Scripting
|
CVE-2007-1468
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283605
|
- |
|
xigla
|
absolute_image_gallery_xe
|
SQL injection vulnerability in gallery.asp in Absolute Image Gallery 2.0 allows remote attackers to execute arbitrary SQL commands via the categoryid parameter in a viewimage action.
|
CWE-89
SQL Injection
|
CVE-2007-1469
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283606
|
- |
|
netsw
|
libftp
|
Multiple buffer overflows in LIBFtp 5.0 allow user-assisted remote attackers to execute arbitrary code via certain long arguments to the (1) FtpArchie, (2) FtpDebugDebug, (3) FtpOpenDir, (4) FtpSize,…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-1470
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283607
|
- |
|
cisco
|
acs_solution_engine ciscoworks ip_communicator meetingplace security_device_manager unified_meetingplace unified_meetingplace_express unified_personal_communicator unified_vid…
|
Multiple cross-site scripting (XSS) vulnerabilities in (1) PreSearch.html and (2) PreSearch.class in Cisco Secure Access Control Server (ACS), VPN Client, Unified Personal Communicator, MeetingPlace,…
|
NVD-CWE-Other
|
CVE-2007-1467
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283608
|
- |
|
orion-blog
|
orion-blog
|
admin/default.asp in Orion-Blog 2.0 allows remote attackers to bypass authentication controls and gain privileges via a direct URL request for admin/AdminBlogNewsEdit.asp.
|
NVD-CWE-Other
|
CVE-2007-1471
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283609
|
- |
|
t-systems_solutions_for_research_gmbh
|
groupit
|
Variable overwrite vulnerability in groupit/base/groupit.start.inc in Groupit 2.00b5 allows remote attackers to conduct remote file inclusion attacks and execute arbitrary PHP code via arguments that…
|
CWE-94
Code Injection
|
CVE-2007-1472
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283610
|
- |
|
horde
|
horde_application_framework
|
Cross-site scripting (XSS) vulnerability in framework/NLS/NLS.php in Horde Framework before 3.1.4 RC1, when the login page contains a language selection box, allows remote attackers to inject arbitra…
|
NVD-CWE-Other
|
CVE-2007-1473
|
2018-10-17 01:38 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|