|
283751
|
- |
|
hp
|
openview_client_configuraton_manager openview_configuration_management
|
httpd.tkd in Radia Integration Server in Hewlett-Packard (HP) OpenView Configuration Management (CM) Infrastructure 4.0 through 4.2i and Client Configuration Manager (CCM) 2.0 allows remote attackers…
|
CWE-200
Information Exposure
|
CVE-2007-5413
|
2018-10-16 06:44 |
2007-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283752
|
- |
|
mozilla
|
firefox
|
Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 2.0, when UTF-7 document content is rendered directly in UTF-7, allows remote attackers to inject arbitrary web script or HTML via a…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5414
|
2018-10-16 06:44 |
2007-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283753
|
- |
|
mozilla
|
firefox
|
Cross-site scripting (XSS) vulnerability in Mozilla Firefox 2.0, when UTF-7 document content is rendered directly in UTF-7, allows remote attackers to inject arbitrary web script or HTML via a gopher…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5415
|
2018-10-16 06:44 |
2007-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283754
|
- |
|
drupal
|
drupal
|
Drupal 5.2 and earlier does not properly unset variables when the input data includes a numeric parameter with a value matching an alphanumeric parameter's hash value, which allows remote attackers t…
|
CWE-189
Numeric Errors
|
CVE-2007-5416
|
2018-10-16 06:44 |
2007-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283755
|
- |
|
boastmachine
|
boastmachine
|
Directory traversal vulnerability in index.php in boastMachine (aka bMachine) 2.8 allows remote attackers to read arbitrary files via a .. (dot dot) in the id parameter.
|
CWE-22
Path Traversal
|
CVE-2007-5417
|
2018-10-16 06:44 |
2007-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283756
|
- |
|
care2x
|
2g
|
Multiple PHP remote file inclusion vulnerabilities in CARE2X 2G 2.2 allow remote attackers to execute arbitrary PHP code via a URL in the root_path parameter to (1) en_copyrite.php, (2) vi_copyrite.p…
|
CWE-94
Code Injection
|
CVE-2007-5418
|
2018-10-16 06:44 |
2007-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283757
|
- |
|
3com
|
3crwe554g72t
|
The 3Com 3CRWER100-75 router with 1.2.10ww software, when enabling an optional virtual server, configures this server to accept all source IP addresses on the external (Internet) interface unless the…
|
CWE-16
Configuration
|
CVE-2007-5419
|
2018-10-16 06:44 |
2007-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283758
|
- |
|
3com
|
3crwe554g72t
|
The 3Com 3CRWER100-75 router with 1.2.10ww software, when remote management is disabled but a web server has been configured, serves a web page to external clients, which might allow remote attackers…
|
CWE-16 CWE-200
Configuration Information Exposure
|
CVE-2007-5420
|
2018-10-16 06:44 |
2007-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283759
|
- |
|
tiki
|
tikiwiki_cms\/groupware
|
tiki-graph_formula.php in TikiWiki 1.9.8 allows remote attackers to execute arbitrary code via PHP sequences in the f array parameter, which are processed by create_function.
|
CWE-94
Code Injection
|
CVE-2007-5423
|
2018-10-16 06:44 |
2007-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283760
|
- |
|
php
|
php
|
The disable_functions feature in PHP 4 and 5 allows attackers to bypass intended restrictions by using an alias, as demonstrated by using ini_alter when ini_set is disabled.
|
NVD-CWE-Other
|
CVE-2007-5424
|
2018-10-16 06:44 |
2007-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|