|
306971
|
- |
|
g.rodola
|
pyftpdlib
|
FTPServer.py in pyftpdlib before 0.2.0 does not increment the attempted_logins count for a USER command that specifies an invalid username, which makes it easier for remote attackers to obtain access…
|
CWE-287
Improper Authentication
|
CVE-2007-6737
|
2024-11-21 09:40 |
2010-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306972
|
- |
|
g.rodola
|
pyftpdlib
|
Multiple directory traversal vulnerabilities in FTPServer.py in pyftpdlib before 0.2.0 allow remote authenticated users to access arbitrary files and directories via a .. (dot dot) in a (1) LIST, (2)…
|
CWE-22
Path Traversal
|
CVE-2007-6736
|
2024-11-21 09:40 |
2010-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306973
|
6.5 |
MEDIUM
Network
|
mozilla
|
firefox
|
A flaw in Mozilla's embedded certificate code might allow web sites to install root certificates on devices without user approval.
|
-
|
CVE-2007-5967
|
2024-11-21 09:39 |
2021-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306974
|
7.5 |
HIGH
Network
|
viewvc debian
|
viewvc debian_linux
|
viewvc 1.0.3 allows improper access control to files in a repository when using the "forbidden" configuration option.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2007-5743
|
2024-11-21 09:38 |
2019-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306975
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox
|
Remote code execution in the Venkman script debugger in Mozilla Firefox before 2.0.0.8.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5341
|
2024-11-21 09:37 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306976
|
9.8 |
CRITICAL
Network
|
x
|
libxfont
|
A single byte overflow in catalogue.c in X.Org libXfont 1.3.1 allows remote attackers to have unspecified impact.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5199
|
2024-11-21 09:37 |
2017-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306977
|
5.9 |
MEDIUM
Network
|
linux
|
linux_kernel
|
The Linux kernel before 2.4.36-rc1 has a race condition. It was possible to bypass systrace policies by flooding the ptraced process with SIGCONT signals, which can can wake up a PTRACED process.
|
CWE-362
Race Condition
|
CVE-2007-4774
|
2024-11-21 09:36 |
2020-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306978
|
9.8 |
CRITICAL
Network
|
systrace_project
|
systrace
|
Systrace before 1.6.0 has insufficient escape policy enforcement.
|
CWE-415
Double Free
|
CVE-2007-4773
|
2024-11-21 09:36 |
2020-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306979
|
9.1 |
CRITICAL
Network
|
mandriva
|
mondo
|
Mondo 2.24 has insecure handling of temporary files.
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2007-3915
|
2024-11-21 09:34 |
2019-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306980
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In Linux 2.6 before 2.6.23, the TRACE_IRQS_ON function in iret_exc calls a C function without ensuring that the segments are set properly. The kernel's %fs needs to be restored before the call in TRA…
|
NVD-CWE-Other
|
CVE-2007-3732
|
2024-11-21 09:33 |
2019-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|