|
284561
|
- |
|
microsoft
|
publisher
|
Multiple unspecified vulnerabilities in Microsoft Office Publisher allow user-assisted remote attackers to cause a denial of service (application crash) via a crafted PUB file, possibly involving wor…
|
NVD-CWE-noinfo CWE-20
Improper Input Validation
|
CVE-2007-6534
|
2018-10-16 06:55 |
2007-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284562
|
- |
|
google
|
toolbar
|
The Custom Button Installer dialog in Google Toolbar 4 and 5 beta presents certain domain names in the (1) "Downloaded from" and (2) "Privacy considerations" sections without verifying domain names, …
|
CWE-200
Information Exposure
|
CVE-2007-6536
|
2018-10-16 06:55 |
2007-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284563
|
- |
|
winuae
|
winuae
|
Stack-based buffer overflow in the zfile_gunzip function in zfile.c in WinUAE 1.4.4 and earlier allows user-assisted remote attackers to execute arbitrary code via a long filename in a gzipped archiv…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-6537
|
2018-10-16 06:55 |
2007-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284564
|
- |
|
mrbs
|
mrbs
|
SQL injection vulnerability in ing/blocks/mrbs/code/web/view_entry.php in the MRBS plugin for Moodle allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2007-6538
|
2018-10-16 06:55 |
2007-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284565
|
- |
|
idevspot
|
isupport
|
PHP local file inclusion vulnerability in index.php in IDevspot iSupport 1.8 allows remote attackers to include local files via the include_file parameter.
|
CWE-94
Code Injection
|
CVE-2007-6539
|
2018-10-16 06:55 |
2007-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284566
|
- |
|
neuron
|
news
|
SQL injection vulnerability in neuron news 1.0 allows remote attackers to execute arbitrary SQL commands via the q parameter to the default URI in patch/.
|
CWE-89
SQL Injection
|
CVE-2007-6540
|
2018-10-16 06:55 |
2007-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284567
|
- |
|
neuron_news
|
neuron_news
|
Multiple cross-site scripting (XSS) vulnerabilities in neuron news 1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the topic parameter in a viewtopic action, or the (2) news…
|
CWE-79
Cross-site Scripting
|
CVE-2007-6541
|
2018-10-16 06:55 |
2007-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284568
|
- |
|
runcms
|
runcms
|
Multiple SQL injection vulnerabilities in RunCMS before 1.6.1 allow remote attackers to execute arbitrary SQL commands via the lid parameter to (1) brokenfile.php, (2) visit.php, or (3) ratefile.php …
|
CWE-89
SQL Injection
|
CVE-2007-6544
|
2018-10-16 06:55 |
2007-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284569
|
- |
|
runcms
|
runcms
|
Multiple cross-site scripting (XSS) vulnerabilities in RunCMS before 1.6.1 allow remote attackers to inject arbitrary web script or HTML via (1) the subject parameter to modules/news/submit.php; (2) …
|
CWE-79
Cross-site Scripting
|
CVE-2007-6545
|
2018-10-16 06:55 |
2007-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284570
|
- |
|
runcms
|
runcms
|
RunCMS before 1.6.1 uses a predictable session id, which makes it easier for remote attackers to hijack sessions via a modified id.
|
NVD-CWE-Other
|
CVE-2007-6546
|
2018-10-16 06:55 |
2007-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|