|
284841
|
- |
|
aruba_networks
|
mc-800
|
Cross-site scripting (XSS) vulnerability in the login page in the management interface in the Aruba 800 Mobility Controller 2.5.4.18 and earlier, and 2.4.8.6-FIPS and earlier, allows remote attackers…
|
CWE-79
Cross-site Scripting
|
CVE-2007-6054
|
2018-10-16 06:49 |
2007-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284842
|
- |
|
liferay
|
portal
|
Cross-site scripting (XSS) vulnerability in c/portal/login in Liferay Portal 4.1.0 and 4.1.1 allows remote attackers to inject arbitrary web script or HTML via the login parameter. NOTE: this issue …
|
CWE-79
Cross-site Scripting
|
CVE-2007-6055
|
2018-10-16 06:49 |
2007-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284843
|
- |
|
aida-orga
|
aida-web
|
frame.html in Aida-Web (Aida Web) allows remote attackers to bypass a protection mechanism and obtain comment and task details via modified values to the (1) Mehr and (2) SUPER parameters.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-6056
|
2018-10-16 06:49 |
2007-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284844
|
- |
|
profilecms
|
profilecms
|
Multiple SQL injection vulnerabilities in index.php in ProfileCMS 1.0 and earlier allow remote attackers to execute arbitrary SQL commands via the id parameter in a (1) codes action in the profile-co…
|
CWE-89
SQL Injection
|
CVE-2007-6058
|
2018-10-16 06:49 |
2007-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284845
|
- |
|
ahnlab
|
v3_internet_security
|
AhnLab Antivirus 3 Internet Security 2008 Platinum appends data to a filename string at a location indicated by the "Filename length" field in a ZIP header, which allows remote attackers to cause a d…
|
CWE-20
Improper Input Validation
|
CVE-2007-6060
|
2018-10-16 06:49 |
2007-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284846
|
- |
|
postgresql tcl_tk
|
postgresql tcl_tk
|
Algorithmic complexity vulnerability in the regular expression parser in TCL before 8.4.17, as used in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, and 7.4 before 7.4.19, allows…
|
CWE-189
Numeric Errors
|
CVE-2007-6067
|
2018-10-16 06:49 |
2008-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284847
|
- |
|
sciurus
|
sciurus_hosting_panel
|
Direct static code injection vulnerability in acp/savenews.php in Sciurus Hosting Panel, possibly 2.0.3, allows remote attackers to inject arbitrary PHP code via the filecontents parameter, which can…
|
CWE-94
Code Injection
|
CVE-2007-6082
|
2018-10-16 06:49 |
2007-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284848
|
- |
|
icebb
|
icebb
|
SQL injection vulnerability in admin/index.php in IceBB 1.0-rc6 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header.
|
CWE-89
SQL Injection
|
CVE-2007-6083
|
2018-10-16 06:49 |
2007-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284849
|
- |
|
vigilecms
|
vigilecms
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in VigileCMS 1.4 allow remote attackers to inject arbitrary web script or HTML via the message field in the (1) vedipm or (2) live_cha…
|
CWE-79
Cross-site Scripting
|
CVE-2007-6085
|
2018-10-16 06:49 |
2007-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284850
|
- |
|
vigilecms
|
vigilecms
|
Directory traversal vulnerability in index.php in VigileCMS 1.4 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the module parameter.
|
CWE-22
Path Traversal
|
CVE-2007-6086
|
2018-10-16 06:49 |
2007-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|