|
284791
|
- |
|
torrentstrike
|
torrentstrike
|
SQL injection vulnerability in index.php in TBSource, as used in (1) TBDev and (2) TorrentStrike 0.4, allows remote authenticated users to execute arbitrary SQL commands via the choice parameter. NO…
|
CWE-89
SQL Injection
|
CVE-2007-5975
|
2018-10-16 06:48 |
2007-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284792
|
- |
|
xoops
|
mylinks_module
|
SQL injection vulnerability in brokenlink.php in the mylinks module for XOOPS allows remote attackers to execute arbitrary SQL commands via the lid parameter.
|
CWE-89
SQL Injection
|
CVE-2007-5978
|
2018-10-16 06:48 |
2007-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284793
|
- |
|
f5
|
firepass_4100
|
Cross-site scripting (XSS) vulnerability in download_plugin.php3 in F5 Firepass 4100 SSL VPN 5.4 through 5.5.2 and 6.0 through 6.0.1 allows remote attackers to inject arbitrary web script or HTML via…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5979
|
2018-10-16 06:48 |
2007-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284794
|
- |
|
eggblog
|
eggblog
|
Cross-site scripting (XSS) vulnerability in home/rss.php in eggblog before 3.1.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF).
|
CWE-79
Cross-site Scripting
|
CVE-2007-5980
|
2018-10-16 06:48 |
2007-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284795
|
- |
|
justin_hagstrom
|
autoindex_php_script
|
Cross-site scripting (XSS) vulnerability in index.php in Justin Hagstrom AutoIndex PHP Script before 2.2.3 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF).
|
CWE-79
Cross-site Scripting
|
CVE-2007-5983
|
2018-10-16 06:48 |
2007-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284796
|
- |
|
justin_hagstrom
|
autoindex_php_script
|
classes/Url.php in Justin Hagstrom AutoIndex PHP Script before 2.2.4 allows remote attackers to cause a denial of service (CPU and memory consumption) via a %00 sequence in the dir parameter to index…
|
CWE-20
Improper Input Validation
|
CVE-2007-5984
|
2018-10-16 06:48 |
2007-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284797
|
- |
|
skype_technologies
|
skype
|
Unspecified vulnerability in the skype4com URI handler in Skype before 3.6 GOLD allows remote attackers to execute arbitrary code via "short string values" that result in heap corruption.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5989
|
2018-10-16 06:48 |
2007-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284798
|
- |
|
exo
|
exophpdesk
|
Cross-site scripting (XSS) vulnerability in ExoPHPdesk allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in a user profile, possibly the (1) name and (2) website …
|
CWE-79
Cross-site Scripting
|
CVE-2007-5990
|
2018-10-16 06:48 |
2007-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284799
|
- |
|
exo
|
exophpdesk
|
SQL injection vulnerability in index.php in ExoPHPdesk allows remote attackers to execute arbitrary SQL commands via the user parameter in a profile fn action.
|
CWE-89
SQL Injection
|
CVE-2007-5991
|
2018-10-16 06:48 |
2007-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284800
|
- |
|
vtls
|
vtls.web.gateway
|
Cross-site scripting (XSS) vulnerability in Visionary Technology in Library Solutions (VTLS) vtls.web.gateway before 48.1.1 allows remote attackers to inject arbitrary web script or HTML via the sear…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5993
|
2018-10-16 06:48 |
2007-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|