|
303741
|
9.8 |
CRITICAL
Network
|
clamav debian
|
clamav debian_linux
|
clamav 0.91.2 suffers from a floating point exception when using ScanOLE2.
|
NVD-CWE-Other
|
CVE-2007-6745
|
2024-11-21 09:40 |
2019-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303742
|
8.8 |
HIGH
Network
|
sas
|
sas_drug_development
|
SAS Drug Development (SDD) before 32DRG02 mishandles logout actions, which allows a user (who was previously logged in) to access resources by pressing a back or forward button in a web browser.
|
CWE-20
Improper Input Validation
|
CVE-2007-6763
|
2024-11-21 09:40 |
2019-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303743
|
9.8 |
CRITICAL
Network
|
linux
|
linux_kernel
|
In the Linux kernel before 2.6.20, there is an off-by-one bug in net/netlabel/netlabel_cipso_v4.c where it is possible to overflow the doi_def->tags[] array.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-6762
|
2024-11-21 09:40 |
2019-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303744
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
drivers/media/video/videobuf-vmalloc.c in the Linux kernel before 2.6.24 does not initialize videobuf_mapping data structures, which allows local users to trigger an incorrect count value and videobu…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-6761
|
2024-11-21 09:40 |
2017-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303745
|
9.8 |
CRITICAL
Network
|
dataprobe
|
ibootbar_firmware
|
Dataprobe iBootBar (with 2007-09-20 and possibly later beta firmware) allows remote attackers to bypass authentication, and conduct power-cycle attacks on connected devices, via a DCCOOKIE cookie.
|
CWE-287
Improper Authentication
|
CVE-2007-6760
|
2024-11-21 09:40 |
2017-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303746
|
9.8 |
CRITICAL
Network
|
dataprobe
|
ibootbar_firmware
|
Dataprobe iBootBar (with 2007-09-20 and possibly later released firmware) allows remote attackers to bypass authentication, and conduct power-cycle attacks on connected devices, via a DCRABBIT cookie.
|
CWE-287
Improper Authentication
|
CVE-2007-6759
|
2024-11-21 09:40 |
2017-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303747
|
- |
|
gehealthcare
|
centricity_dms_firmware
|
GE Healthcare Centricity DMS 4.2, 4.1, and 4.0 has a password of Muse!Admin for the Museadmin user, which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is de…
|
CWE-255
Credentials Management
|
CVE-2007-6757
|
2024-11-21 09:40 |
2015-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303748
|
- |
|
zoll
|
monitor\/defibrillator
|
ZOLL Defibrillator / Monitor M Series, E Series, and R Series have a default password for System Configuration mode, which allows physically proximate attackers to modify device configuration and cau…
|
CWE-255
Credentials Management
|
CVE-2007-6756
|
2024-11-21 09:40 |
2014-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303749
|
- |
|
dell
|
bsafe_crypto-c-micro-edition bsafe_crypto-j
|
The NIST SP 800-90A default statement of the Dual Elliptic Curve Deterministic Random Bit Generation (Dual_EC_DRBG) algorithm contains point Q constants with a possible relationship to certain "skele…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2007-6755
|
2024-11-21 09:40 |
2013-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303750
|
- |
|
canonical
|
telepathy-idle ubuntu_linux
|
telepathy-idle before 0.1.15 does not verify (1) that the issuer is a trusted CA, (2) that the server hostname matches a domain name in the subject's Common Name (CN), or (3) the expiration date of t…
|
CWE-20
Improper Input Validation
|
CVE-2007-6746
|
2024-11-21 09:40 |
2013-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|