|
272911
|
- |
|
vonage
|
motorola_phone_adapter_vt2142-vd
|
The Vonage Motorola Phone Adapter VT 2142-VD does not properly verify that a SIP INVITE message originated from a legitimate server, which allows remote attackers to send spoofed INVITE messages, as …
|
CWE-287
Improper Authentication
|
CVE-2007-5791
|
2023-11-7 11:01 |
2007-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272912
|
- |
|
vonage
|
motorola_phone_adapter_vt2142-vd
|
The Vonage Motorola Phone Adapter VT 2142-VD does not encrypt RTP packets, which might allow remote attackers to eavesdrop by sniffing the network and reconstructing the RTP session.
|
CWE-310
Cryptographic Issues
|
CVE-2007-5792
|
2023-11-7 11:01 |
2007-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272913
|
- |
|
globe7
|
globe7
|
The Globe7 soft phone client 7.3 sends username and password information in cleartext, which allows remote attackers to obtain sensitive information by sniffing the HTTP traffic.
|
CWE-310
Cryptographic Issues
|
CVE-2007-5768
|
2023-11-7 11:01 |
2007-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272914
|
- |
|
nufw
|
nufw
|
Heap-based buffer overflow in the samp_send function in nuauth/sasl.c in NuFW before 2.2.7 allows remote attackers to cause a denial of service via unspecified input on which base64 encoding is perfo…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5723
|
2023-11-7 11:01 |
2007-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272915
|
- |
|
openldap
|
openldap
|
OpenLDAP before 2.3.39 allows remote attackers to cause a denial of service (slapd crash) via an LDAP request with a malformed objectClasses attribute. NOTE: this has been reported as a double free,…
|
CWE-399
Resource Management Errors
|
CVE-2007-5707
|
2023-11-7 11:01 |
2007-10-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272916
|
- |
|
-
|
-
|
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-5339. Reason: This candidate is a reservation duplicate of CVE-2007-5339. Notes: All CVE users should reference CVE-2007-533…
|
-
|
CVE-2007-5336
|
2023-11-7 11:01 |
2007-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272917
|
- |
|
-
|
-
|
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-5587. Reason: This candidate is a duplicate of CVE-2007-5587. Notes: All CVE users should reference CVE-2007-5587 instead of…
|
-
|
CVE-2007-5586
|
2023-11-7 11:01 |
2007-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272918
|
- |
|
-
|
-
|
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-4158. Reason: This candidate is a duplicate of CVE-2007-4158. It was based on a vague pre-advisory, so the duplicate was not…
|
-
|
CVE-2007-5553
|
2023-11-7 11:01 |
2007-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272919
|
- |
|
valve_software
|
half-life_dedicated_server webmod_plugin
|
Cross-site scripting (XSS) vulnerability in auth.w in djeyl.net WebMod 0.48 Half-Life Dedicated Server plugin allows remote attackers to inject arbitrary web script or HTML via the redir parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2007-5477
|
2023-11-7 11:01 |
2007-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272920
|
- |
|
apache
|
tomcat
|
Absolute path traversal vulnerability in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0, 5.0.0, 5.5.0 through 5.5.25, and 6.0.0 through 6.0.14, under certain configurations, allows remote authenticated use…
|
CWE-22
Path Traversal
|
CVE-2007-5461
|
2023-11-7 11:01 |
2007-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|