|
283851
|
- |
|
webspell
|
webspell
|
Successful exploitation requires that "magic_quotes_gpc" is disabled.
|
CWE-89
SQL Injection
|
CVE-2007-1154
|
2018-10-17 01:36 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283852
|
- |
|
webspell
|
webspell
|
Affected product versions not specified.
|
CWE-89
SQL Injection
|
CVE-2007-1154
|
2018-10-17 01:36 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283853
|
- |
|
webspell
|
webspell
|
Unrestricted file upload vulnerability in webSPELL allows remote authenticated administrators to upload and execute arbitrary PHP code via the add squad feature. NOTE: this issue may be an administr…
|
CWE-20
Improper Input Validation
|
CVE-2007-1155
|
2018-10-17 01:36 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283854
|
- |
|
webspell
|
webspell
|
Affected product versions unspecified.
|
CWE-20
Improper Input Validation
|
CVE-2007-1155
|
2018-10-17 01:36 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283855
|
- |
|
man_machine_systems
|
jbrowser
|
JBrowser allows remote attackers to bypass authentication and access certain administrative capabilities via a direct request for _admin/.
|
NVD-CWE-Other
|
CVE-2007-1156
|
2018-10-17 01:36 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283856
|
- |
|
jboss
|
jboss
|
Cross-site request forgery (CSRF) vulnerability in jmx-console/HtmlAdaptor in JBoss allows remote attackers to perform privileged actions as administrators via certain MBean operations, a different v…
|
CWE-352
Origin Validation Error
|
CVE-2007-1157
|
2018-10-17 01:36 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283857
|
- |
|
jboss
|
jboss
|
Affected product versions unspecified.
|
CWE-352
Origin Validation Error
|
CVE-2007-1157
|
2018-10-17 01:36 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283858
|
- |
|
postnuke_software_foundation
|
pagesetter
|
Directory traversal vulnerability in index.php in the Pagesetter 6.2.0 through 6.3.0 beta 5 module for PostNuke allows remote attackers to read arbitrary files via a .. (dot dot) in the id parameter.
|
NVD-CWE-Other
|
CVE-2007-1158
|
2018-10-17 01:36 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283859
|
- |
|
webspell
|
webspell
|
webSPELL 4.0, and possibly later versions, allows remote attackers to bypass authentication via a ws_auth cookie, a different vulnerability than CVE-2006-4782.
|
CWE-287
Improper Authentication
|
CVE-2007-1160
|
2018-10-17 01:36 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283860
|
- |
|
webspell
|
webspell
|
This vulnerability may affect more recent versions of the product as well. (WebSPELL, WebSPELL, 4.0 and later)
|
CWE-287
Improper Authentication
|
CVE-2007-1160
|
2018-10-17 01:36 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|