|
299571
|
- |
|
php
|
php
|
The session extension in PHP before 5.2.4 might allow local users to bypass open_basedir restrictions via a session file that is a symlink.
|
CWE-59
Link Following
|
CVE-2007-4652
|
2017-07-29 10:33 |
2007-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299572
|
- |
|
cgi-rescue
|
shopping_basket_professional
|
Multiple directory traversal vulnerabilities in CGI RESCUE Shopping Basket Professional 7.51 and earlier allow remote attackers to list arbitrary directories, and possibly read arbitrary files, via d…
|
CWE-200 CWE-22
Information Exposure Path Traversal
|
CVE-2007-4655
|
2017-07-29 10:33 |
2007-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299573
|
- |
|
cgi-rescue
|
shopping_basket_professional
|
Additional information can be found at: http://www.securityfocus.com/bid/25500/info
|
CWE-200 CWE-22
Information Exposure Path Traversal
|
CVE-2007-4655
|
2017-07-29 10:33 |
2007-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299574
|
- |
|
php
|
php
|
The zend_alter_ini_entry function in PHP before 5.2.4 does not properly handle an interruption to the flow of execution triggered by a memory_limit violation, which has unknown impact and attack vect…
|
NVD-CWE-Other
|
CVE-2007-4659
|
2017-07-29 10:33 |
2007-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299575
|
- |
|
php
|
php
|
Directory traversal vulnerability in PHP before 5.2.4 allows attackers to bypass open_basedir restrictions via unspecified vectors involving the glob function.
|
CWE-22
Path Traversal
|
CVE-2007-4663
|
2017-07-29 10:33 |
2007-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299576
|
- |
|
firebirdsql
|
firebird
|
Unspecified vulnerability in the (1) attach database and (2) create database functionality in Firebird before 2.0.2, when a filename exceeds MAX_PATH_LEN, has unknown impact and attack vectors, aka C…
|
CWE-119 CWE-20
Incorrect Access of Indexable Resource ('Range Error') Improper Input Validation
|
CVE-2007-4664
|
2017-07-29 10:33 |
2007-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299577
|
- |
|
firebirdsql
|
firebird
|
Unspecified vulnerability in the server in Firebird before 2.0.2 allows remote attackers to cause a denial of service (daemon crash) via an XNET session that makes multiple simultaneous requests to r…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-4665
|
2017-07-29 10:33 |
2007-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299578
|
- |
|
firebirdsql
|
firebird
|
Unspecified vulnerability in the server in Firebird before 2.0.2, when a Superserver/TCP/IP environment is configured, allows remote attackers to cause a denial of service (CPU and memory consumption…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-4666
|
2017-07-29 10:33 |
2007-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299579
|
- |
|
firebirdsql
|
firebird
|
Unspecified vulnerability in the Services API in Firebird before 2.0.2 allows remote attackers to cause a denial of service, aka CORE-1149.
|
NVD-CWE-Other
|
CVE-2007-4667
|
2017-07-29 10:33 |
2007-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299580
|
- |
|
apple
|
quicktime
|
Argument injection vulnerability in Apple QuickTime 7.2 for Windows XP SP2 and Vista allows remote attackers to execute arbitrary commands via a URL in the qtnext field in a crafted QTL file. NOTE: …
|
CWE-78
OS Command
|
CVE-2007-4673
|
2017-07-29 10:33 |
2007-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|