|
290461
|
- |
|
vicftps
|
vicftps
|
Stack-based buffer overflow in VicFTPS before 5.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long CWD command.
|
NVD-CWE-Other
|
CVE-2007-1014
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290462
|
- |
|
aktueldownload
|
aktueldownload_haber_script
|
SQL injection vulnerability in HaberDetay.asp in Aktueldownload Haber script allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2007-1015
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290463
|
- |
|
virtualsystem
|
vs-news-system
|
PHP remote file inclusion vulnerability in show_news_inc.php in VirtualSystem VS-News-System 1.2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the newsordner parame…
|
NVD-CWE-Other
|
CVE-2007-1017
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290464
|
- |
|
virtualsystem
|
vs-news-system
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2007-1017
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290465
|
- |
|
webspell
|
webspell
|
SQL injection vulnerability in news.php in webSPELL 4.01.02, when register_globals is enabled, allows remote attackers to execute arbitrary SQL commands via the showonly parameter to index.php, a dif…
|
NVD-CWE-Other
|
CVE-2007-1019
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290466
|
- |
|
webspell
|
webspell
|
Successful exploitation e.g. allows retrieval of password hashes, but requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2007-1019
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290467
|
- |
|
xfairguy
|
codeavalanche_news
|
SQL injection vulnerability in inc_listnews.asp in CodeAvalanche News 1.x allows remote attackers to execute arbitrary SQL commands via the CAT_ID parameter.
|
NVD-CWE-Other
|
CVE-2007-1021
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290468
|
- |
|
snitz_communications
|
snitz_forums_2000
|
SQL injection vulnerability in pop_profile.asp in Snitz Forums 2000 3.1 SR4 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2007-1023
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290469
|
- |
|
virtualsystem
|
vs-link-partner
|
PHP remote file inclusion vulnerability in inc/functions_inc.php in VS-Link-Partner 2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the gb_pfad, or possibly script_…
|
NVD-CWE-Other
|
CVE-2007-1025
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290470
|
- |
|
spoonlabs
|
vivvo_article_management_cms
|
Directory traversal vulnerability in include/db_conn.php in SpoonLabs Vivvo Article Management CMS 3.4 allows remote attackers to include and execute arbitrary local files via the root parameter.
|
CWE-22
Path Traversal
|
CVE-2007-1031
|
2017-10-11 10:31 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|