|
288931
|
- |
|
sun
|
java_enterprise_system jre sdk
|
Sun Java Web Start in JDK and JRE 5.0 Update 10 and earlier, and Java Web Start in SDK and JRE 1.4.2_13 and earlier, allows remote attackers to perform unauthorized actions via an application that gr…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-2435
|
2017-10-11 10:32 |
2007-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288932
|
- |
|
sun
|
java_enterprise_system jre sdk
|
The vendor has addressed this issue through product updates that can be found at: http://sunsolve.sun.com/search/document.do?assetkey=1-26-102881-1
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-2435
|
2017-10-11 10:32 |
2007-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288933
|
- |
|
firefly
|
firefly
|
Multiple PHP remote file inclusion vulnerabilities in FireFly 1.1.01 allow remote attackers to execute arbitrary PHP code via a URL in the doc_root parameter to (1) localize.php or (2) config.php in …
|
NVD-CWE-Other
|
CVE-2007-2456
|
2017-10-11 10:32 |
2007-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288934
|
- |
|
ruben_boelinger
|
myflash
|
PHP remote file inclusion vulnerability in myflash-button.php in the myflash 1.00 and earlier plugin for WordPress allows remote attackers to execute arbitrary PHP code via a URL in the wpPATH parame…
|
NVD-CWE-Other
|
CVE-2007-2485
|
2017-10-11 10:32 |
2007-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288935
|
- |
|
motobit
|
motobit
|
Directory traversal vulnerability in download.asp in Motobit 1.3 and 1.5 (aka PStruh-CZ) allows remote attackers to read arbitrary files via a .. (dot dot) in the File parameter.
|
NVD-CWE-Other
|
CVE-2007-2486
|
2017-10-11 10:32 |
2007-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288936
|
- |
|
mxbb
|
mxbb_faq mxbb_rules
|
PHP remote file inclusion vulnerability in faq.php in the FAQ & RULES 2.0.0 and earlier module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path paramet…
|
NVD-CWE-Other
|
CVE-2007-2493
|
2017-10-11 10:32 |
2007-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288937
|
- |
|
office_ocx
|
powerpoint_viewer_ocx
|
Multiple stack-based buffer overflows in the PowerPointOCX ActiveX control in PowerPointViewer.ocx 3.1.0.3 allow remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long (…
|
NVD-CWE-Other
|
CVE-2007-2494
|
2017-10-11 10:32 |
2007-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288938
|
- |
|
office_ocx
|
excel_viewer_ocx
|
Multiple stack-based buffer overflows in the ExcelOCX ActiveX control in ExcelViewer.ocx 3.1.0.6 allow remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long (1) DoOleCo…
|
NVD-CWE-Other
|
CVE-2007-2495
|
2017-10-11 10:32 |
2007-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288939
|
- |
|
realnetworks
|
realplayer
|
RealNetworks RealPlayer 10 Gold allows remote attackers to cause a denial of service (memory consumption) via a certain .ra file. NOTE: this issue was referred to as a "memory leak," but it is not c…
|
NVD-CWE-Other
|
CVE-2007-2497
|
2017-10-11 10:32 |
2007-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288940
|
- |
|
nullsoft
|
winamp
|
libmp4v2.dll in Winamp 5.02 through 5.34 allows user-assisted remote attackers to execute arbitrary code via a certain .MP4 file. NOTE: some of these details are obtained from third party informatio…
|
NVD-CWE-Other
|
CVE-2007-2498
|
2017-10-11 10:32 |
2007-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|