|
290111
|
- |
|
tecnick.com
|
tcexam
|
Dynamic variable evaluation vulnerability in shared/config/tce_config.php in TCExam 4.0.011 and earlier allows remote attackers to conduct cross-site scripting (XSS) and possibly other attacks by mod…
|
NVD-CWE-Other
|
CVE-2007-2431
|
2017-10-11 10:32 |
2007-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290112
|
- |
|
sun
|
java_enterprise_system jre sdk
|
Sun Java Web Start in JDK and JRE 5.0 Update 10 and earlier, and Java Web Start in SDK and JRE 1.4.2_13 and earlier, allows remote attackers to perform unauthorized actions via an application that gr…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-2435
|
2017-10-11 10:32 |
2007-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290113
|
- |
|
sun
|
java_enterprise_system jre sdk
|
The vendor has addressed this issue through product updates that can be found at: http://sunsolve.sun.com/search/document.do?assetkey=1-26-102881-1
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-2435
|
2017-10-11 10:32 |
2007-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290114
|
- |
|
firefly
|
firefly
|
Multiple PHP remote file inclusion vulnerabilities in FireFly 1.1.01 allow remote attackers to execute arbitrary PHP code via a URL in the doc_root parameter to (1) localize.php or (2) config.php in …
|
NVD-CWE-Other
|
CVE-2007-2456
|
2017-10-11 10:32 |
2007-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290115
|
- |
|
ruben_boelinger
|
myflash
|
PHP remote file inclusion vulnerability in myflash-button.php in the myflash 1.00 and earlier plugin for WordPress allows remote attackers to execute arbitrary PHP code via a URL in the wpPATH parame…
|
NVD-CWE-Other
|
CVE-2007-2485
|
2017-10-11 10:32 |
2007-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290116
|
- |
|
motobit
|
motobit
|
Directory traversal vulnerability in download.asp in Motobit 1.3 and 1.5 (aka PStruh-CZ) allows remote attackers to read arbitrary files via a .. (dot dot) in the File parameter.
|
NVD-CWE-Other
|
CVE-2007-2486
|
2017-10-11 10:32 |
2007-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290117
|
- |
|
mxbb
|
mxbb_faq mxbb_rules
|
PHP remote file inclusion vulnerability in faq.php in the FAQ & RULES 2.0.0 and earlier module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path paramet…
|
NVD-CWE-Other
|
CVE-2007-2493
|
2017-10-11 10:32 |
2007-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290118
|
- |
|
office_ocx
|
powerpoint_viewer_ocx
|
Multiple stack-based buffer overflows in the PowerPointOCX ActiveX control in PowerPointViewer.ocx 3.1.0.3 allow remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long (…
|
NVD-CWE-Other
|
CVE-2007-2494
|
2017-10-11 10:32 |
2007-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290119
|
- |
|
office_ocx
|
excel_viewer_ocx
|
Multiple stack-based buffer overflows in the ExcelOCX ActiveX control in ExcelViewer.ocx 3.1.0.6 allow remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long (1) DoOleCo…
|
NVD-CWE-Other
|
CVE-2007-2495
|
2017-10-11 10:32 |
2007-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290120
|
- |
|
realnetworks
|
realplayer
|
RealNetworks RealPlayer 10 Gold allows remote attackers to cause a denial of service (memory consumption) via a certain .ra file. NOTE: this issue was referred to as a "memory leak," but it is not c…
|
NVD-CWE-Other
|
CVE-2007-2497
|
2017-10-11 10:32 |
2007-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|