|
283791
|
- |
|
quicksoft
|
easymail_objects
|
Stack-based buffer overflow in the Connect method in the IMAP4 component in Quiksoft EasyMail Objects before 6.5 allows remote attackers to execute arbitrary code via a long host name.
|
NVD-CWE-Other
|
CVE-2007-1029
|
2018-10-17 01:36 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283792
|
- |
|
niels_provos
|
libevent
|
Niels Provos libevent 1.2 and 1.2a allows remote attackers to cause a denial of service (infinite loop) via a DNS response containing a label pointer that references its own offset.
|
NVD-CWE-Other
|
CVE-2007-1030
|
2018-10-17 01:36 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283793
|
- |
|
jboss
|
jboss_application_server
|
The default configuration of JBoss does not restrict access to the (1) console and (2) web management interfaces, which allows remote attackers to bypass authentication and gain administrative access…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-1036
|
2018-10-17 01:36 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283794
|
- |
|
ezboo
|
webstats
|
Ezboo webstats, possibly 3.0.3, allows remote attackers to bypass authentication and gain access via a direct request to (1) update.php and (2) config.php.
|
NVD-CWE-Other
|
CVE-2007-1043
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283795
|
- |
|
pearson_education
|
powerschool
|
Pearson Education PowerSchool 4.3.6 allows remote attackers to list the contents of the admin folder via a URI composed of the admin/ directory name and an arbitrary filename ending in ".js." NOTE: …
|
CWE-200
Information Exposure
|
CVE-2007-1044
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283796
|
- |
|
malbum
|
malbum
|
mAlbum 0.3 has default accounts (1) "login"/"pass" for its administrative account and (2) "dqsfg"/"sdfg", which allows remote attackers to gain privileges.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-1045
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283797
|
- |
|
malbum
|
malbum
|
mAlbum should reconfigure their administrative login and password from their default values.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-1045
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283798
|
- |
|
dem_trac
|
dem_trac
|
Dem_trac allows remote attackers to read log file contents via a direct request for /anc_sit.txt.
|
NVD-CWE-Other
|
CVE-2007-1046
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283799
|
- |
|
phpbb_wordsearch
|
phpbb_wordsearch
|
PHP remote file inclusion vulnerability in admin_rebuild_search.php in phpbb_wordsearch allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
|
NVD-CWE-Other
|
CVE-2007-1048
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283800
|
- |
|
abledesign
|
mycalendar
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in AbleDesign MyCalendar allow remote attackers to inject arbitrary web script or HTML via (1) the go parameter, (2) the keyword param…
|
CWE-79
Cross-site Scripting
|
CVE-2007-1050
|
2018-10-17 01:36 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|