|
285111
|
- |
|
ask.com
|
ask_toolbar
|
Stack-based buffer overflow in the AskJeevesToolBar.SettingsPlugin.1 ActiveX control in askBar.dll in IAC Search & Media ask.com Ask Toolbar 4.0.2.53 and earlier allows remote attackers to execute ar…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5107
|
2018-10-16 06:40 |
2007-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285112
|
- |
|
ask.com
|
ask_toolbar
|
Unspecified vulnerability in IAC Search & Media ask.com toolbar has unknown impact and remote attack vectors. NOTE: this information is based upon a vague advisory by a vulnerability information sal…
|
NVD-CWE-noinfo
|
CVE-2007-5108
|
2018-10-16 06:40 |
2007-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285113
|
- |
|
flatnuke
|
flatnuke
|
Cross-site request forgery (CSRF) vulnerability in index.php in FlatNuke 2.6, and possibly 3, allows remote attackers to change the password and privilege level of arbitrary accounts via the user par…
|
CWE-352
Origin Validation Error
|
CVE-2007-5109
|
2018-10-16 06:40 |
2007-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285114
|
- |
|
roi_revolution
|
urchin
|
Cross-site scripting (XSS) vulnerability in session.cgi (aka the login page) in Google Urchin 5 5.7.03 and earlier allows remote attackers to inject arbitrary web script or HTML via the query string,…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5112
|
2018-10-16 06:40 |
2007-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285115
|
- |
|
roi_revolution
|
urchin
|
report.cgi in Google Urchin allows remote attackers to bypass authentication and obtain sensitive information (web server logs) via certain modified query parameters, as demonstrated using the profil…
|
CWE-287
Improper Authentication
|
CVE-2007-5113
|
2018-10-16 06:40 |
2007-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285116
|
- |
|
larry_wall mandrakesoft openpkg redhat
|
perl mandrake_multi_network_firewall openpkg enterprise_linux
|
Buffer overflow in the polymorphic opcode support in the Regular Expression Engine (regcomp.c) in Perl 5.8 allows context-dependent attackers to execute arbitrary code by switching from byte to Unico…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5116
|
2018-10-16 06:40 |
2007-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285117
|
- |
|
jspwiki
|
jspwiki
|
JSPWiki 2.4.103 and 2.5.139-beta allows remote attackers to obtain sensitive information (full path) via an invalid integer in the version parameter to the default URI under attach/Main/.
|
CWE-20
Improper Input Validation
|
CVE-2007-5119
|
2018-10-16 06:40 |
2007-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285118
|
- |
|
jspwiki
|
jspwiki
|
Multiple cross-site scripting (XSS) vulnerabilities in JSPWiki 2.4.103 and 2.5.139-beta allow remote attackers to inject arbitrary web script or HTML via the (1) group and (2) members parameters in (…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5120
|
2018-10-16 06:40 |
2007-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285119
|
- |
|
jspwiki
|
jspwiki
|
Cross-site scripting (XSS) vulnerability in JSPWiki 2.5.139-beta allows remote attackers to inject arbitrary web script or HTML via the redirect parameter to wiki-3/Login.jsp and unspecified other co…
|
CWE-79
Cross-site Scripting
|
CVE-2007-5121
|
2018-10-16 06:40 |
2007-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285120
|
- |
|
aol
|
instant_messenger
|
The embedded Internet Explorer server control in AOL Instant Messenger (AIM) 6.5.3.12 and earlier allows remote attackers to execute arbitrary code via unspecified web script or HTML in an instant me…
|
CWE-94
Code Injection
|
CVE-2007-5124
|
2018-10-16 06:40 |
2007-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|