|
279151
|
- |
|
mysql debian canonical
|
mysql debian_linux ubuntu_linux
|
MySQL before 4.1.23, 5.0.x before 5.0.42, and 5.1.x before 5.1.18 does not require the DROP privilege for RENAME TABLE statements, which allows remote authenticated users to rename arbitrary tables.
|
NVD-CWE-Other
|
CVE-2007-2691
|
2018-10-20 04:00 |
2007-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279152
|
- |
|
mysql debian canonical
|
mysql debian_linux ubuntu_linux
|
The vendor has released a product update to address this issue:
Upgrade to MySQL version 5.1.18: http://dev.mysql.com/downloads/
|
NVD-CWE-Other
|
CVE-2007-2691
|
2018-10-20 04:00 |
2007-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279153
|
- |
|
postgresql debian canonical
|
postgresql debian_linux ubuntu_linux
|
Untrusted search path vulnerability in PostgreSQL before 7.3.19, 7.4.x before 7.4.17, 8.0.x before 8.0.13, 8.1.x before 8.1.9, and 8.2.x before 8.2.4 allows remote authenticated users, when permitted…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-2138
|
2018-10-20 03:54 |
2007-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279154
|
- |
|
php
|
php
|
Buffer overflow in PHP 4.4.6 and earlier, and unspecified PHP 5 versions, allows local and possibly remote attackers to execute arbitrary code via long server name arguments to the (1) mssql_connect …
|
NVD-CWE-Other
|
CVE-2007-1411
|
2018-10-20 03:18 |
2007-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279155
|
- |
|
php
|
php
|
Multiple buffer overflows in the (1) ibase_connect and (2) ibase_pconnect functions in the interbase extension in PHP 4.4.6 and earlier allow context-dependent attackers to execute arbitrary code via…
|
NVD-CWE-Other
|
CVE-2007-1475
|
2018-10-20 03:18 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279156
|
- |
|
php
|
php
|
Successful exploitation requires that the Interbase extension is installed.
|
NVD-CWE-Other
|
CVE-2007-1475
|
2018-10-20 03:18 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279157
|
- |
|
php
|
php
|
The array_user_key_compare function in PHP 4.4.6 and earlier, and 5.x up to 5.2.1, makes erroneous calls to zval_dtor, which triggers memory corruption and allows local users to bypass safe_mode and …
|
NVD-CWE-Other
|
CVE-2007-1484
|
2018-10-20 03:18 |
2007-03-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279158
|
- |
|
mediawiki
|
mediawiki
|
Cross-site scripting (XSS) vulnerability in the AJAX features in index.php in MediaWiki 1.9.x before 1.9.0rc2, and 1.8.2 and earlier allows remote attackers to inject arbitrary web script or HTML via…
|
CWE-94
Code Injection
|
CVE-2007-1055
|
2018-10-20 03:08 |
2007-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279159
|
- |
|
php-nuke
|
emporium_module
|
SQL injection vulnerability in the category file in modules.php in the Emporium 2.3.0 and earlier module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the category_id par…
|
CWE-89
SQL Injection
|
CVE-2007-1034
|
2018-10-20 03:05 |
2007-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279160
|
- |
|
michael_salzer
|
guestbox
|
Michael Salzer Guestbox 0.6, and other versions before 0.8, allows remote attackers to obtain the source IP addresses of guestbook entries via a direct request to /gb/gblog.
|
CWE-200
Information Exposure
|
CVE-2006-0861
|
2018-10-20 02:29 |
2006-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|