|
288801
|
- |
|
xoops
|
repository_module
|
SQL injection vulnerability in viewcat.php in the Repository module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter.
|
NVD-CWE-Other
|
CVE-2007-1847
|
2017-10-11 10:32 |
2007-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288802
|
- |
|
really_simple_php_and_ajax
|
really_simple_php_and_ajax
|
Multiple directory traversal vulnerabilities in Really Simple PHP and Ajax (RSPA) 2007-03-23 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the __class para…
|
NVD-CWE-Other
|
CVE-2007-1851
|
2017-10-11 10:32 |
2007-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288803
|
- |
|
paul_vixie
|
vixie_cron
|
Vixie Cron before 4.1-r10 on Gentoo Linux is installed with insecure permissions, which allows local users to cause a denial of service (cron failure) by creating hard links, which results in a faile…
|
NVD-CWE-Other
|
CVE-2007-1856
|
2017-10-11 10:32 |
2007-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288804
|
- |
|
xscreensaver
|
xscreensaver
|
XScreenSaver 4.10, when using a remote directory service for credentials, does not properly handle the results from the getpwuid function in drivers/lock.c when there is no network connectivity, whic…
|
CWE-287
Improper Authentication
|
CVE-2007-1859
|
2017-10-11 10:32 |
2007-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288805
|
- |
|
sky_gunning
|
myspeach
|
PHP remote file inclusion vulnerability in chat.php in Sky GUNNING MySpeach 3.0.7 and earlier, when used with PHP 5, allows remote attackers to execute arbitrary PHP code via an ftp URL in a my_ms[ro…
|
NVD-CWE-Other
|
CVE-2007-1895
|
2017-10-11 10:32 |
2007-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288806
|
- |
|
sky_gunning
|
myspeach
|
Directory traversal vulnerability in chat.php in Sky GUNNING MySpeach 3.0.7 and earlier allows remote attackers to include arbitrary local files via a .. (dot dot) and trailing %00 (NULL) in a my_ms[…
|
NVD-CWE-Other
|
CVE-2007-1896
|
2017-10-11 10:32 |
2007-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288807
|
- |
|
wordpress
|
wordpress
|
SQL injection vulnerability in xmlrpc (xmlrpc.php) in WordPress 2.1.2, and probably earlier, allows remote authenticated users to execute arbitrary SQL commands via a string parameter value in an XML…
|
CWE-89
SQL Injection
|
CVE-2007-1897
|
2017-10-11 10:32 |
2007-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288808
|
- |
|
wordpress
|
wordpress
|
This vulnerability has been addressed by the vendor with the release of the following product update: http://wordpress.org/development/2007/04/wordpress-213-and-2010/
|
CWE-89
SQL Injection
|
CVE-2007-1897
|
2017-10-11 10:32 |
2007-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288809
|
- |
|
mywebland
|
mybloggie
|
Multiple SQL injection vulnerabilities in myWebland myBloggie 2.1.6 allow remote attackers to execute arbitrary SQL commands via (1) the user_id parameter in a viewuser action to index.php, and allow…
|
CWE-89
SQL Injection
|
CVE-2007-1899
|
2017-10-11 10:32 |
2008-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288810
|
- |
|
php
|
php
|
CRLF injection vulnerability in the FILTER_VALIDATE_EMAIL filter in ext/filter in PHP 5.2.0 and 5.2.1 allows context-dependent attackers to inject arbitrary e-mail headers via an e-mail address with …
|
NVD-CWE-Other
|
CVE-2007-1900
|
2017-10-11 10:32 |
2007-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|