|
284801
|
- |
|
ethereal_group wireshark
|
ethereal wireshark
|
The MEGACO dissector in Wireshark (formerly Ethereal) 0.9.14 to 0.99.6 allows remote attackers to cause a denial of service (long loop and resource consumption) via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2007-6118
|
2018-10-16 06:50 |
2007-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284802
|
- |
|
wireshark
|
wireshark
|
The DCP ETSI dissector in Wireshark (formerly Ethereal) 0.99.6 allows remote attackers to cause a denial of service (long loop and resource consumption) via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2007-6119
|
2018-10-16 06:50 |
2007-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284803
|
- |
|
wireshark ethereal_group
|
wireshark ethereal
|
The Bluetooth SDP dissector Wireshark (formerly Ethereal) 0.99.2 to 0.99.6 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-6120
|
2018-10-16 06:50 |
2007-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284804
|
- |
|
ethereal_group wireshark
|
ethereal wireshark
|
Wireshark (formerly Ethereal) 0.8.16 to 0.99.6 allows remote attackers to cause a denial of service (crash) via a malformed RPC Portmap packet.
|
CWE-20
Improper Input Validation
|
CVE-2007-6121
|
2018-10-16 06:50 |
2007-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284805
|
- |
|
amber_script
|
amber_script
|
Directory traversal vulnerability in scripts/include/show_content.php in Amber Script 1.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the id parameter. …
|
CWE-20
Improper Input Validation
|
CVE-2007-6129
|
2018-10-16 06:50 |
2007-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284806
|
- |
|
amber_script
|
amber_script
|
Successful exploitation requires that "magic_quotes_gpc" is disabled.
|
CWE-20
Improper Input Validation
|
CVE-2007-6129
|
2018-10-16 06:50 |
2007-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284807
|
- |
|
phpslideshow
|
phpslideshow
|
Cross-site scripting (XSS) vulnerability in phpslideshow.php in PHPSlideShow 0.9.9.2, and possibly earlier, allows remote attackers to inject arbitrary web script or HTML via the directory parameter.…
|
CWE-79
Cross-site Scripting
|
CVE-2007-6135
|
2018-10-16 06:50 |
2007-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284808
|
- |
|
m2scripts
|
my_space_scripts_poll_creator
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in M2Scripts MySpace Scripts Poll Creator allow remote attackers to inject arbitrary web script or HTML via the (1) title, (2) intro, …
|
CWE-79
Cross-site Scripting
|
CVE-2007-6136
|
2018-10-16 06:50 |
2007-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284809
|
- |
|
vu
|
mass_mailer
|
SQL injection vulnerability in redir.asp in VU Mass Mailer allows remote attackers to execute arbitrary SQL commands via the password parameter to Default.asp (aka the Login Page). NOTE: some of the…
|
CWE-89
SQL Injection
|
CVE-2007-6138
|
2018-10-16 06:50 |
2007-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284810
|
- |
|
mp3
|
toolbox
|
PHP remote file inclusion vulnerability in index.php in Mp3 ToolBox 1.0 beta 5 allows remote attackers to execute arbitrary PHP code via a URL in the skin_file parameter.
|
CWE-94
Code Injection
|
CVE-2007-6139
|
2018-10-16 06:50 |
2007-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|