|
284161
|
- |
|
hp
|
pml_driver_hpz12 color_laserjet_4650 officejet_4100 officejet_5100 officejet_5500 officejet_6100 officejet_7100 officejet_d officejet_g officejet_k psc_1100 psc_1200<…
|
The PML Driver HPZ12 (HPZipm12.exe) in the HP all-in-one drivers, as used by multiple HP products, uses insecure SERVICE_CHANGE_CONFIG DACL permissions, which allows local users to gain privileges an…
|
NVD-CWE-Other
|
CVE-2007-0161
|
2018-10-17 01:31 |
2007-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284162
|
- |
|
securekit
|
securekit_steganography
|
SecureKit Steganography 1.7.1 and 1.8 embeds password information in the carrier file, which allows remote attackers to bypass authentication requirements and decrypt embedded steganography by replac…
|
NVD-CWE-Other
|
CVE-2007-0163
|
2018-10-17 01:31 |
2007-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284163
|
- |
|
camouflage
|
camouflage
|
Camouflage 1.2.1 embeds password information in the carrier file, which allows remote attackers to bypass authentication requirements and decrypt embedded steganography by replacing certain bytes of …
|
NVD-CWE-Other
|
CVE-2007-0164
|
2018-10-17 01:31 |
2007-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284164
|
- |
|
ppc_search_engine wgs-ppc
|
ppc_search_engine wgs-ppc
|
Multiple PHP file inclusion vulnerabilities in WGS-PPC (aka PPC Search Engine), as distributed with other aliases, allow remote attackers to execute arbitrary PHP code via a URL in the INC parameter …
|
NVD-CWE-Other
|
CVE-2007-0167
|
2018-10-17 01:31 |
2007-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284165
|
- |
|
sina
|
sina
|
Multiple stack-based multiple buffer overflows in the BRWOSSRE2UC.dll ActiveX Control in Sina UC2006 and earlier allow remote attackers to execute arbitrary code via a long string in the (1) astrVeri…
|
NVD-CWE-Other
|
CVE-2007-0174
|
2018-10-17 01:31 |
2007-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284166
|
- |
|
gforge
|
gforge
|
Cross-site scripting (XSS) vulnerability in search/advanced_search.php in GForge 4.5.11 allows remote attackers to inject arbitrary web script or HTML via the words parameter.
|
NVD-CWE-Other
|
CVE-2007-0176
|
2018-10-17 01:31 |
2007-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284167
|
- |
|
php_web_scripts
|
easy_banner_pro
|
PHP remote file inclusion vulnerability in info.php in Easy Banner Pro 2.8 allows remote attackers to execute arbitrary PHP code via a URL in the s[phppath] parameter.
|
NVD-CWE-Other
|
CVE-2007-0178
|
2018-10-17 01:31 |
2007-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284168
|
- |
|
phpkit
|
phpkit
|
SQL injection vulnerability in comment.php in PHPKIT 1.6.1 R2 allows remote attackers to execute arbitrary SQL commands via the subid parameter.
|
NVD-CWE-Other
|
CVE-2007-0179
|
2018-10-17 01:31 |
2007-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284169
|
- |
|
scriptaty
|
magic_photo_storage_website
|
PHP remote file inclusion vulnerability in include/common_function.php in magic photo storage website allows remote attackers to execute arbitrary PHP code via a URL in the _config[site_path] paramet…
|
NVD-CWE-Other
|
CVE-2007-0181
|
2018-10-17 01:31 |
2007-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284170
|
- |
|
scriptaty
|
magic_photo_storage_website
|
Multiple PHP remote file inclusion vulnerabilities in magic photo storage website allow remote attackers to execute arbitrary PHP code via a URL in the _config[site_path] parameter to (1) admin_passw…
|
NVD-CWE-Other
|
CVE-2007-0182
|
2018-10-17 01:31 |
2007-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|