|
283881
|
- |
|
till_gerken
|
phppolls
|
Till Gerken phpPolls 1.0.3 allows remote attackers to bypass authentication and perform certain administrative actions via a direct request to phpPollAdmin.php3. NOTE: this issue might subsume CVE-2…
|
NVD-CWE-Other
|
CVE-2007-0924
|
2018-10-17 01:35 |
2007-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283882
|
- |
|
communityserver.org
|
community_server
|
Cross-site scripting (XSS) vulnerability in search/SearchResults.aspx in Community Server allows remote attackers to inject arbitrary web script or HTML via the q parameter.
|
NVD-CWE-Other
|
CVE-2007-0925
|
2018-10-17 01:35 |
2007-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283883
|
- |
|
kvguestbook
|
kvguestbook
|
The dologin function in guestbook.php in KvGuestbook 1.0 Beta allows remote attackers to gain administrative privileges, probably via modified $mysql['pass'] and $gbpass variables.
|
NVD-CWE-Other
|
CVE-2007-0926
|
2018-10-17 01:35 |
2007-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283884
|
- |
|
utorrent
|
utorrent
|
Heap-based buffer overflow in uTorrent 1.6 allows remote attackers to execute arbitrary code via a torrent file with a crafted announce header.
|
NVD-CWE-Other
|
CVE-2007-0927
|
2018-10-17 01:35 |
2007-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283885
|
- |
|
virtual_calendar
|
virtual_calendar
|
Virtual Calendar stores sensitive information under the web root with insufficient access control, which allows remote attackers to download an encoded password via a direct request for pwd.txt.
|
NVD-CWE-Other
|
CVE-2007-0928
|
2018-10-17 01:35 |
2007-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283886
|
- |
|
guillaume_fontaine
|
php_rrd_browser
|
Directory traversal vulnerability in php rrd browser before 0.2.1 allows remote attackers to read arbitrary files via ".." sequences in the p parameter.
|
NVD-CWE-Other
|
CVE-2007-0929
|
2018-10-17 01:35 |
2007-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283887
|
- |
|
alcatel-lucent aruba
|
omniaccess_wireless mobility_controller
|
Heap-based buffer overflow in the management interfaces in (1) Aruba Mobility Controllers 200, 800, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 allows remote attackers to …
|
NVD-CWE-Other
|
CVE-2007-0931
|
2018-10-17 01:35 |
2007-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283888
|
- |
|
alcatel-lucent aruba
|
omniaccess_wireless mobility_controller
|
The (1) Aruba Mobility Controllers 200, 600, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 do not properly implement authentication and privilege assignment for the guest ac…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-0932
|
2018-10-17 01:35 |
2007-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283889
|
- |
|
microsoft
|
visio
|
Unspecified vulnerability in Microsoft Visio 2002 allows remote user-assisted attackers to execute arbitrary code via a Visio (.VSD, VSS, .VST) file with a crafted version number that triggers memory…
|
NVD-CWE-Other
|
CVE-2007-0934
|
2018-10-17 01:35 |
2007-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283890
|
- |
|
microsoft
|
office visio
|
Multiple unspecified vulnerabilities in Microsoft Visio 2002 allow remote user-assisted attackers to execute arbitrary code via a Visio (.VSD, VSS, .VST) file with a crafted packed object that trigge…
|
NVD-CWE-Other
|
CVE-2007-0936
|
2018-10-17 01:35 |
2007-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|