|
299651
|
- |
|
lhaplus
|
lhaplus
|
Heap-based buffer overflow in Lhaplus before 1.55 allows remote attackers to execute arbitrary code via a long filename in an ARJ archive.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5048
|
2017-07-29 10:33 |
2007-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299652
|
- |
|
phpgedview
|
phpgedview
|
Multiple cross-site scripting (XSS) vulnerabilities in PhpGedView 4.1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) box_width, (2) PEDIGREE_GENERATIONS, and (3) rootid p…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5051
|
2017-07-29 10:33 |
2007-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299653
|
- |
|
webmin
|
webmin
|
Unspecified vulnerability in Webmin before 1.370 on Windows allows remote authenticated users to execute arbitrary commands via a crafted URL.
|
CWE-20
Improper Input Validation
|
CVE-2007-5066
|
2017-07-29 10:33 |
2007-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299654
|
- |
|
redhat
|
linux
|
Red Hat Enterprise Linux 4 does not properly compile and link gdm with tcp_wrappers on x86_64 platforms, which might allow remote attackers to bypass intended access restrictions.
|
NVD-CWE-Other
|
CVE-2007-5079
|
2017-07-29 10:33 |
2007-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299655
|
- |
|
realnetworks
|
realone_player realplayer realplayer_enterprise
|
Integer overflow in RealNetworks RealPlayer 10 and 10.5, RealOne Player 1, and RealPlayer Enterprise for Windows allows remote attackers to execute arbitrary code via a crafted Lyrics3 2.00 tag in an…
|
CWE-189
Numeric Errors
|
CVE-2007-5080
|
2017-07-29 10:33 |
2007-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299656
|
- |
|
sisd
|
freeside
|
Cross-site scripting (XSS) vulnerability in search/cust_bill_event.cgi in Freeside 1.7.2 allows remote attackers to inject arbitrary web script or HTML via the failed parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2007-5088
|
2017-07-29 10:33 |
2007-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299657
|
- |
|
furquim
|
chironfs
|
ChironFS before 1.0 RC7 sets user/group ownership to the mounter account instead of the creator account when files are created, which allows local users to gain privileges.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-5101
|
2017-07-29 10:33 |
2007-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299658
|
- |
|
bcoos
|
bcoos
|
SQL injection vulnerability in index.php in the Arcade module in bcoos 1.0.10 allows remote attackers to execute arbitrary SQL commands via the gid parameter in a play_game action. NOTE: the provena…
|
CWE-89
SQL Injection
|
CVE-2007-5104
|
2017-07-29 10:33 |
2007-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299659
|
- |
|
ekke_doerre
|
mods_4_xoops_contenido_ez_publish
|
Multiple PHP remote file inclusion vulnerabilities in Ekke Doerre Contenido 42VariablVersion (42VV10) in contenido_hacks in Mods 4 Xoops Contenido eZ publish (pdf4cms) allow remote attackers to execu…
|
CWE-94
Code Injection
|
CVE-2007-5115
|
2017-07-29 10:33 |
2007-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299660
|
- |
|
cisco
|
catalyst_6500 catalyst_6500_ws-svc-nam-1 catalyst_6500_ws-svc-nam-2 catalyst_6500_ws-x6380-nam catalyst_7600 catalyst_7600_ws-svc-nam-1 catalyst_7600_ws-svc-nam-2 catalyst_7600_w…
|
Cisco Catalyst 6500 and Cisco 7600 series devices use 127/8 IP addresses for Ethernet Out-of-Band Channel (EOBC) internal communication, which might allow remote attackers to send packets to an inter…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-5134
|
2017-07-29 10:33 |
2007-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|