|
284781
|
- |
|
vigilecms
|
vigilecms
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in VigileCMS 1.4 allow remote attackers to inject arbitrary web script or HTML via the message field in the (1) vedipm or (2) live_cha…
|
CWE-79
Cross-site Scripting
|
CVE-2007-6085
|
2018-10-16 06:49 |
2007-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284782
|
- |
|
vigilecms
|
vigilecms
|
Directory traversal vulnerability in index.php in VigileCMS 1.4 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the module parameter.
|
CWE-22
Path Traversal
|
CVE-2007-6086
|
2018-10-16 06:49 |
2007-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284783
|
- |
|
vigilecms
|
vigilecms
|
Cross-site request forgery (CSRF) vulnerability in index.php in VigileCMS 1.4 allows remote attackers to change the admin password via certain parameters to the changepass module.
|
CWE-352
Origin Validation Error
|
CVE-2007-6087
|
2018-10-16 06:49 |
2007-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284784
|
- |
|
jiro
|
banner_system
|
Multiple SQL injection vulnerabilities in files/login.asp in JiRo's Banner System (JBS) 2.0, and possibly JiRo's Upload Manager (aka JiRo's Upload System or JUS), allow remote attackers to execute ar…
|
CWE-89
SQL Injection
|
CVE-2007-6091
|
2018-10-16 06:49 |
2007-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284785
|
- |
|
alstrasoft
|
e-friends
|
SQL injection vulnerability in index.php in AlstraSoft E-Friends 4.98 and earlier allows remote attackers to execute arbitrary SQL commands via the seid parameter in a viewevent action.
|
CWE-89
SQL Injection
|
CVE-2007-6106
|
2018-10-16 06:49 |
2007-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284786
|
- |
|
ethereal_group wireshark
|
ethereal wireshark
|
Multiple unspecified vulnerabilities in Wireshark (formerly Ethereal) allow remote attackers to cause a denial of service (crash) via (1) a crafted MP3 file or (2) unspecified vectors to the NCP diss…
|
NVD-CWE-noinfo
|
CVE-2007-6111
|
2018-10-16 06:49 |
2007-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284787
|
- |
|
wireshark
|
wireshark
|
Buffer overflow in the PPP dissector Wireshark (formerly Ethereal) 0.99.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-6112
|
2018-10-16 06:49 |
2007-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284788
|
- |
|
wireshark
|
wireshark
|
Integer signedness error in the DNP3 dissector in Wireshark (formerly Ethereal) 0.10.12 to 0.99.6 allows remote attackers to cause a denial of service (long loop) via a malformed DNP3 packet.
|
CWE-189
Numeric Errors
|
CVE-2007-6113
|
2018-10-16 06:49 |
2007-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284789
|
- |
|
mit
|
kerberos_5
|
Double free vulnerability in the gss_krb5int_make_seal_token_v3 function in lib/gssapi/krb5/k5sealv3.c in MIT Kerberos 5 (krb5) has unknown impact and attack vectors.
|
CWE-399
Resource Management Errors
|
CVE-2007-5971
|
2018-10-16 06:48 |
2007-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284790
|
- |
|
mit
|
kerberos_5
|
Information from Apple: http://docs.info.apple.com/article.html?artnum=307562
|
CWE-399
Resource Management Errors
|
CVE-2007-5971
|
2018-10-16 06:48 |
2007-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|