|
283921
|
- |
|
makit martyn_kilbryde
|
newsposter_script
|
SQL injection vulnerability in news_page.asp in Martyn Kilbryde Newsposter Script (aka makit news/blog poster) 3 and earlier allows remote attackers to execute arbitrary SQL commands via the uid para…
|
NVD-CWE-Other
|
CVE-2007-0600
|
2018-10-17 01:33 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283922
|
- |
|
aztek_forum
|
aztek_forum
|
common/safety.php in Aztek Forum 4.00 allows remote attackers to enter certain data containing %22 sequences (URL encoded double quotes) and other potentially dangerous manipulations by sending a coo…
|
NVD-CWE-Other
|
CVE-2007-0601
|
2018-10-17 01:33 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283923
|
- |
|
trend_micro
|
viruswall
|
Buffer overflow in libvsapi.so in the VSAPI library in Trend Micro VirusWall 3.81 for Linux, as used by IScan.BASE/vscan, allows local users to gain privileges via a long command line argument, a dif…
|
NVD-CWE-Other
|
CVE-2007-0602
|
2018-10-17 01:33 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283924
|
- |
|
pgp
|
corporate_desktop
|
PGP Desktop before 9.5.1 does not validate data objects received over the (1) \pipe\pgpserv named pipe for PGPServ.exe or the (2) \pipe\pgpsdkserv named pipe for PGPsdkServ.exe, which allows remote a…
|
NVD-CWE-Other
|
CVE-2007-0603
|
2018-10-17 01:33 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283925
|
- |
|
advanced_guestbook
|
advanced_guestbook
|
Cross-site scripting (XSS) vulnerability in picture.php in Advanced Guestbook 2.4.2 allows remote attackers to inject arbitrary web script or HTML via the picture parameter.
|
NVD-CWE-Other
|
CVE-2007-0605
|
2018-10-17 01:33 |
2007-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283926
|
- |
|
advanced_guestbook
|
advanced_guestbook
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2007-0605
|
2018-10-17 01:33 |
2007-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283927
|
- |
|
w-agora
|
w-agora
|
w-agora 4.2.1 allows remote attackers to obtain sensitive information by via the (1) bn[] array parameter to index.php, which expects a string, and (2) certain parameters to delete_forum.php, which d…
|
NVD-CWE-Other
|
CVE-2007-0606
|
2018-10-17 01:33 |
2007-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283928
|
- |
|
w-agora
|
w-agora
|
W-Agora (Web-Agora) 4.2.1, when register_globals is enabled, stores globals.inc under the web document root with insufficient access control, which allows remote attackers to obtain application path …
|
NVD-CWE-Other
|
CVE-2007-0607
|
2018-10-17 01:33 |
2007-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283929
|
- |
|
advanced_guestbook
|
advanced_guestbook
|
Advanced Guestbook 2.4.2 allows remote attackers to obtain sensitive information via an invalid (1) GB_TBL parameter to (a) lang/codes-english.php or (b) image.php, which reveal the database name; (2…
|
NVD-CWE-Other
|
CVE-2007-0608
|
2018-10-17 01:33 |
2007-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283930
|
- |
|
advanced_guestbook
|
advanced_guestbook
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2007-0608
|
2018-10-17 01:33 |
2007-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|