|
283391
|
- |
|
microsoft
|
windows_2000 windows_2003_server windows_vista windows_xp
|
rpcrt4.dll (aka the RPC runtime library) in Microsoft Windows XP SP2, XP Professional x64 Edition, Server 2003 SP1 and SP2, Server 2003 x64 Edition and x64 Edition SP2, and Vista and Vista x64 Editio…
|
NVD-CWE-Other
|
CVE-2007-2228
|
2018-10-17 01:42 |
2007-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283392
|
- |
|
microsoft
|
windows_vista
|
Microsoft Windows Vista uses insecure default permissions for unspecified "local user information data stores" in the registry and the file system, which allows local users to obtain sensitive inform…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-2229
|
2018-10-17 01:42 |
2007-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283393
|
- |
|
dovecot
|
dovecot
|
Directory traversal vulnerability in index/mbox/mbox-storage.c in Dovecot before 1.0.rc29, when using the zlib plugin, allows remote attackers to read arbitrary gzipped (.gz) mailboxes (mbox files) v…
|
NVD-CWE-Other
|
CVE-2007-2231
|
2018-10-17 01:42 |
2007-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283394
|
- |
|
cosign
|
cosign
|
The CHECK command in Cosign 2.0.1 and earlier allows remote attackers to bypass authentication requirements via CR (\r) sequences in the cosign cookie parameter.
|
NVD-CWE-Other
|
CVE-2007-2232
|
2018-10-17 01:42 |
2007-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283395
|
- |
|
cosign
|
cosign
|
cosign-bin/cosign.cgi in Cosign 2.0.2 and earlier allows remote authenticated users to perform unauthorized actions as an arbitrary user by using CR (\r) sequences in the service parameter to inject …
|
NVD-CWE-Other
|
CVE-2007-2233
|
2018-10-17 01:42 |
2007-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283396
|
- |
|
punbb
|
punbb
|
include/common.php in PunBB 1.2.14 and earlier does not properly handle a disabled ini_get function when checking the register_globals setting, which allows remote attackers to register global parame…
|
NVD-CWE-Other
|
CVE-2007-2234
|
2018-10-17 01:42 |
2007-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283397
|
- |
|
punbb
|
punbb
|
Multiple cross-site scripting (XSS) vulnerabilities in PunBB 1.2.14 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) Referer HTTP header to misc.php or the (2) ca…
|
NVD-CWE-Other
|
CVE-2007-2235
|
2018-10-17 01:42 |
2007-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283398
|
- |
|
punbb
|
punbb
|
footer.php in PunBB 1.2.14 and earlier allows remote attackers to include local files in include/user/ via a cross-site scripting (XSS) attack, or via the pun_include tag, as demonstrated by use of a…
|
NVD-CWE-Other
|
CVE-2007-2236
|
2018-10-17 01:42 |
2007-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283399
|
- |
|
ietf
|
ipv6
|
The IPv6 protocol allows remote attackers to cause a denial of service via crafted IPv6 type 0 route headers (IPV6_RTHDR_TYPE_0) that create network amplification between two routers.
|
NVD-CWE-Other
|
CVE-2007-2242
|
2018-10-17 01:42 |
2007-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
283400
|
- |
|
phpmyspace
|
phpmyspace
|
SQL injection vulnerability in modules/news/article.php in phpMySpace Gold 8.10 allows remote attackers to execute arbitrary SQL commands via the item_id parameter.
|
NVD-CWE-Other
|
CVE-2007-2247
|
2018-10-17 01:42 |
2007-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|