|
293631
|
- |
|
php
|
php
|
The glob function in PHP 5.2.3 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via an invalid value of the flags parameter, probably related to mem…
|
CWE-399 CWE-20
Resource Management Errors Improper Input Validation
|
CVE-2007-3806
|
2017-09-29 10:29 |
2007-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293632
|
- |
|
php_arena
|
pafiledb
|
SQL injection vulnerability in includes/search.php in paFileDB 3.6 allows remote attackers to execute arbitrary SQL commands via the categories[] parameter in a search action to index.php, a differen…
|
NVD-CWE-Other
|
CVE-2007-3808
|
2017-09-29 10:29 |
2007-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293633
|
- |
|
prozilla
|
prozilla_directory_script
|
Multiple SQL injection vulnerabilities in Prozilla Directory Script allow remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action to directory.php, and other unsp…
|
NVD-CWE-Other
|
CVE-2007-3809
|
2017-09-29 10:29 |
2007-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293634
|
- |
|
it747
|
realtor_747
|
SQL injection vulnerability in index.php in Realtor 747 allows remote attackers to execute arbitrary SQL commands via the categoryid parameter.
|
NVD-CWE-Other
|
CVE-2007-3810
|
2017-09-29 10:29 |
2007-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293635
|
- |
|
esyndicat
|
esyndicat_directory
|
Multiple SQL injection vulnerabilities in eSyndiCat allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to news.php or (2) the name parameter to page.php.
|
NVD-CWE-Other
|
CVE-2007-3811
|
2017-09-29 10:29 |
2007-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293636
|
- |
|
cmscout
|
cmscout
|
SQL injection vulnerability in forums.php in CMScout 1.23 and earlier allows remote attackers to execute arbitrary SQL commands via the f parameter in a forums action to index.php.
|
NVD-CWE-Other
|
CVE-2007-3812
|
2017-09-29 10:29 |
2007-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293637
|
- |
|
mkportal
|
noboard_module
|
PHP remote file inclusion vulnerability in include/user.php in the NoBoard BETA module for MKPortal allows remote attackers to execute arbitrary PHP code via a URL in the MK_PATH parameter.
|
NVD-CWE-Other
|
CVE-2007-3813
|
2017-09-29 10:29 |
2007-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293638
|
- |
|
sitetrafficstats
|
sitetrafficstats
|
SQL injection vulnerability in referralUrl.php in Traffic Stats allows remote attackers to execute arbitrary SQL commands via the offset parameter.
|
NVD-CWE-Other
|
CVE-2007-3840
|
2017-09-29 10:29 |
2007-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293639
|
- |
|
linux
|
linux_kernel
|
The Linux kernel before 2.6.23-rc1 checks the wrong global variable for the CIFS sec mount option, which might allow remote attackers to spoof CIFS network traffic that the client configured for secu…
|
NVD-CWE-Other
|
CVE-2007-3843
|
2017-09-29 10:29 |
2007-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293640
|
- |
|
redhat
|
enterprise_linux
|
Red Hat Enterprise Linux (RHEL) 5 ships the rpm for the Advanced Intrusion Detection Environment (AIDE) before 0.13.1 with a database that lacks checksum information, which allows context-dependent a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-3849
|
2017-09-29 10:29 |
2007-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|