|
283991
|
- |
|
trend_micro
|
viruswall
|
Buffer overflow in libvsapi.so in the VSAPI library in Trend Micro VirusWall 3.81 for Linux, as used by IScan.BASE/vscan, allows local users to gain privileges via a long command line argument, a dif…
|
NVD-CWE-Other
|
CVE-2007-0602
|
2018-10-17 01:33 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283992
|
- |
|
pgp
|
corporate_desktop
|
PGP Desktop before 9.5.1 does not validate data objects received over the (1) \pipe\pgpserv named pipe for PGPServ.exe or the (2) \pipe\pgpsdkserv named pipe for PGPsdkServ.exe, which allows remote a…
|
NVD-CWE-Other
|
CVE-2007-0603
|
2018-10-17 01:33 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283993
|
- |
|
advanced_guestbook
|
advanced_guestbook
|
Cross-site scripting (XSS) vulnerability in picture.php in Advanced Guestbook 2.4.2 allows remote attackers to inject arbitrary web script or HTML via the picture parameter.
|
NVD-CWE-Other
|
CVE-2007-0605
|
2018-10-17 01:33 |
2007-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283994
|
- |
|
advanced_guestbook
|
advanced_guestbook
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2007-0605
|
2018-10-17 01:33 |
2007-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283995
|
- |
|
w-agora
|
w-agora
|
w-agora 4.2.1 allows remote attackers to obtain sensitive information by via the (1) bn[] array parameter to index.php, which expects a string, and (2) certain parameters to delete_forum.php, which d…
|
NVD-CWE-Other
|
CVE-2007-0606
|
2018-10-17 01:33 |
2007-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283996
|
- |
|
w-agora
|
w-agora
|
W-Agora (Web-Agora) 4.2.1, when register_globals is enabled, stores globals.inc under the web document root with insufficient access control, which allows remote attackers to obtain application path …
|
NVD-CWE-Other
|
CVE-2007-0607
|
2018-10-17 01:33 |
2007-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283997
|
- |
|
advanced_guestbook
|
advanced_guestbook
|
Advanced Guestbook 2.4.2 allows remote attackers to obtain sensitive information via an invalid (1) GB_TBL parameter to (a) lang/codes-english.php or (b) image.php, which reveal the database name; (2…
|
NVD-CWE-Other
|
CVE-2007-0608
|
2018-10-17 01:33 |
2007-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283998
|
- |
|
advanced_guestbook
|
advanced_guestbook
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2007-0608
|
2018-10-17 01:33 |
2007-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283999
|
- |
|
advanced_guestbook
|
advanced_guestbook
|
Directory traversal vulnerability in Advanced Guestbook 2.4.2 allows remote attackers to bypass .htaccess settings, and execute arbitrary PHP local files or read arbitrary local templates, via a .. (…
|
NVD-CWE-Other
|
CVE-2007-0609
|
2018-10-17 01:33 |
2007-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284000
|
- |
|
vlad_leont
|
fd_script
|
download.php in FD Script 1.3.2 and earlier allows remote attackers to read source of files under the web document root with certain extensions, including .php, via a relative pathname in the fname p…
|
NVD-CWE-Other
|
CVE-2007-0620
|
2018-10-17 01:33 |
2007-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|