|
289211
|
- |
|
virtualsystem
|
htaccess_passwort_generator
|
PHP remote file inclusion vulnerability in generate.php in VirtualSystem Htaccess Passwort Generator 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the ht_pfad parameter.
|
NVD-CWE-Other
|
CVE-2007-1013
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289212
|
- |
|
vicftps
|
vicftps
|
Stack-based buffer overflow in VicFTPS before 5.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long CWD command.
|
NVD-CWE-Other
|
CVE-2007-1014
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289213
|
- |
|
aktueldownload
|
aktueldownload_haber_script
|
SQL injection vulnerability in HaberDetay.asp in Aktueldownload Haber script allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2007-1015
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289214
|
- |
|
virtualsystem
|
vs-news-system
|
PHP remote file inclusion vulnerability in show_news_inc.php in VirtualSystem VS-News-System 1.2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the newsordner parame…
|
NVD-CWE-Other
|
CVE-2007-1017
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289215
|
- |
|
virtualsystem
|
vs-news-system
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2007-1017
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289216
|
- |
|
webspell
|
webspell
|
SQL injection vulnerability in news.php in webSPELL 4.01.02, when register_globals is enabled, allows remote attackers to execute arbitrary SQL commands via the showonly parameter to index.php, a dif…
|
NVD-CWE-Other
|
CVE-2007-1019
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289217
|
- |
|
webspell
|
webspell
|
Successful exploitation e.g. allows retrieval of password hashes, but requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2007-1019
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289218
|
- |
|
xfairguy
|
codeavalanche_news
|
SQL injection vulnerability in inc_listnews.asp in CodeAvalanche News 1.x allows remote attackers to execute arbitrary SQL commands via the CAT_ID parameter.
|
NVD-CWE-Other
|
CVE-2007-1021
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289219
|
- |
|
snitz_communications
|
snitz_forums_2000
|
SQL injection vulnerability in pop_profile.asp in Snitz Forums 2000 3.1 SR4 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2007-1023
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289220
|
- |
|
virtualsystem
|
vs-link-partner
|
PHP remote file inclusion vulnerability in inc/functions_inc.php in VS-Link-Partner 2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the gb_pfad, or possibly script_…
|
NVD-CWE-Other
|
CVE-2007-1025
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|