VYPR

CVEs

382,970 total · page 7157 of 7,660

  • CVE-2007-3180Jun 12, 2007
    risk 0.00cvss —epss 0.03

    Buffer overflow in Help and Support Center before 4.4 C on HP Windows systems allows remote attackers to read or write arbitrary files via unknown vectors.

  • CVE-2007-2453Jun 11, 2007
    risk 0.00cvss —epss 0.00

    The random number feature in Linux kernel 2.6 before 2.6.20.13, and 2.6.21.x before 2.6.21.4, (1) does not properly seed pools when there is no entropy, or (2) uses an incorrect cast when extracting entropy, which might cause the random number generator to provide the same…

  • CVE-2007-2873Jun 11, 2007
    risk 0.00cvss —epss 0.00

    SpamAssassin 3.1.x, 3.2.0, and 3.2.1 before 20070611, when running as root in unusual configurations using vpopmail or virtual users, allows local users to cause a denial of service (corrupt arbitrary files) via a symlink attack on a file that is used by spamd.

  • CVE-2007-2876Jun 11, 2007
    risk 0.00cvss —epss 0.01

    The sctp_new function in (1) ip_conntrack_proto_sctp.c and (2) nf_conntrack_proto_sctp.c in Netfilter in Linux kernel 2.6 before 2.6.20.13, and 2.6.21.x before 2.6.21.4, allows remote attackers to cause a denial of service by causing certain invalid states that trigger a NULL…

  • CVE-2007-3179Jun 11, 2007
    risk 0.00cvss —epss 0.01

    Multiple SQL injection vulnerabilities in archives.php in Particle Blogger 1.2.1 and earlier allow remote attackers to execute arbitrary SQL commands via the month parameter and other unspecified vectors.

  • CVE-2007-2875Jun 11, 2007
    risk 0.00cvss —epss 0.00

    Integer underflow in the cpuset_tasks_read function in the Linux kernel before 2.6.20.13, and 2.6.21.x before 2.6.21.4, when the cpuset filesystem is mounted, allows local users to obtain kernel memory contents by using a large offset when reading the /dev/cpuset/tasks file.

  • CVE-2007-2920Jun 11, 2007
    risk 0.01cvss —epss 0.07

    Multiple stack-based buffer overflows in the Zoomify Viewer ActiveX control in ZActiveX.dll might allow remote attackers to execute arbitrary code via unspecified vectors.

  • CVE-2007-3151Jun 11, 2007
    risk 0.04cvss —epss 0.07

    rpttop.htm in the web management interface in Packeteer PacketShaper 7.3.0g2 and 7.5.0g1 allows remote attackers to cause a denial of service (device reboot) via a request with empty values of the OP.MEAS.DATAQUERY and MEAS.TYPE parameters.

  • CVE-2007-3152Jun 11, 2007
    risk 0.00cvss —epss 0.01

    c-ares before 1.4.0 uses a predictable seed for the random number generator for the DNS Transaction ID field, which might allow remote attackers to spoof DNS responses by guessing the field value.

  • CVE-2007-3153Jun 11, 2007
    risk 0.00cvss —epss 0.01

    The ares_init:randomize_key function in c-ares, on platforms other than Windows, uses a weak facility for producing a random number sequence (Unix rand), which makes it easier for remote attackers to spoof DNS responses by guessing certain values.

  • CVE-2007-3154Jun 11, 2007
    risk 0.00cvss —epss 0.02

    Unspecified vulnerability in Walter Zorn wz_tooltip.js (aka wz_tooltips) before 4.01, as used by eGroupWare before 1.2.107-2 and other packages, has unknown impact and remote attack vectors.

  • CVE-2007-3155Jun 11, 2007
    risk 0.00cvss —epss 0.02

    Unspecified vulnerability in eGroupWare before 1.2.107-2 has unknown impact and attack vectors related to ADOdb. NOTE: due to lack of details from the vendor, it is uncertain whether this issue is already covered by another CVE identifier.

  • CVE-2007-3156Jun 11, 2007
    risk 0.00cvss —epss 0.02

    Multiple cross-site scripting (XSS) vulnerabilities in pam_login.cgi in Webmin before 1.350 and Usermin before 1.280 allow remote attackers to inject arbitrary web script or HTML via the (1) cid, (2) message, or (3) question parameter. NOTE: some of these details are obtained…

  • CVE-2007-3157Jun 11, 2007
    risk 0.04cvss —epss 0.09

    IPSecDrv.sys 10.4.0.12 in SafeNET High Assurance Remote 1.4.0 Build 12, and SoftRemote, allows remote attackers to cause a denial of service (infinite loop and system hang) via an invalid packet with certain bytes in an option header, possibly related to the IPv6 support for…

  • CVE-2007-3158Jun 11, 2007
    risk 0.03cvss —epss 0.02

    download_script.asp in ASP Folder Gallery allows remote attackers to read arbitrary files via a filename in the file parameter.

  • CVE-2007-3159Jun 11, 2007
    risk 0.03cvss —epss 0.03

    http.c in MiniWeb Http Server 0.8.x allows remote attackers to cause a denial of service (application crash) via a negative value in the Content-Length HTTP header.

  • CVE-2007-3160Jun 11, 2007
    risk 0.03cvss —epss 0.03

    PHP remote file inclusion vulnerability in admin/header.php in PHP Real Estate Classifieds Premium Plus allows remote attackers to execute arbitrary PHP code via a URL in the loc parameter.

  • CVE-2007-3161Jun 11, 2007
    risk 0.03cvss —epss 0.03

    Buffer overflow in Ace-FTP Client 1.24a allows user-assisted, remote FTP servers to execute arbitrary code via a long response.

  • CVE-2007-3162Jun 11, 2007
    risk 0.04cvss —epss 0.08

    Buffer overflow in the NotSafe function in the idaiehlp ActiveX control in idaiehlp.dll 1.9.1.74 in Internet Download Accelerator (ida) 5.2 allows remote attackers to cause a denial of service (Internet Explorer crash) via a long argument.

  • CVE-2007-3163Jun 11, 2007
    risk 0.00cvss —epss 0.02

    Incomplete blacklist vulnerability in the filemanager in Frederico Caldeira Knabben FCKeditor 2.4.2 allows remote attackers to upload arbitrary .php files via an alternate data stream syntax, as demonstrated by .php::$DATA filenames, a related issue to CVE-2006-0658.

  • CVE-2007-3164Jun 11, 2007
    risk 0.01cvss —epss 0.10

    Microsoft Internet Explorer 7, when prompting for HTTP Basic Authentication for an IDN web site, uses ACE labels for the domain name in the status bar, but uses internationalized labels for this name in the authentication dialog, which might allow remote attackers to perform…

  • CVE-2007-3165Jun 11, 2007
    risk 0.00cvss —epss 0.01

    Tor before 0.1.2.14 can construct circuits in which an entry guard is in the same family as the exit node, which might compromise the anonymity of traffic sources and destinations by exposing traffic to inappropriate remote observers.

  • CVE-2007-3166Jun 11, 2007
    risk 0.03cvss —epss 0.02

    Buffer overflow in Qualcomm Eudora 7.1.0.9 allows user-assisted, remote IMAP servers to execute arbitrary code via a long FLAGS response to a SELECT INBOX command.

  • CVE-2007-3167Jun 11, 2007
    risk 0.03cvss —epss 0.06

    Stack-based buffer overflow in the Vivotek Motion Jpeg ActiveX control (aka MjpegControl) in MjpegDecoder.dll 2.0.0.13 allows remote attackers to execute arbitrary code via a long PtzUrl property value.

  • CVE-2007-3168Jun 11, 2007
    risk 0.04cvss —epss 0.06

    A certain ActiveX control in the EDraw Office Viewer Component (edrawofficeviewer.ocx) 4.0.5.20, and other versions before 5.0, allows remote attackers to delete arbitrary files via the DeleteLocalFile method.

  • CVE-2007-3169Jun 11, 2007
    risk 0.04cvss —epss 0.12

    Buffer overflow in a certain ActiveX control in the EDraw Office Viewer Component (edrawofficeviewer.ocx) 4.0.5.20, and other versions before 5.0, allows remote attackers to cause a denial of service (Internet Explorer 7 crash) or execute arbitrary code via a long first argument…

  • CVE-2007-3170Jun 11, 2007
    risk 0.03cvss —epss 0.02

    Multiple cross-site scripting (XSS) vulnerabilities in Uebimiau Webmail allow remote attackers to inject arbitrary web script or HTML via (1) the PATH_INFO to redirect.php or (2) the selected_theme parameter to demo/pop3/error.php.

  • CVE-2007-3171Jun 11, 2007
    risk 0.03cvss —epss 0.02

    Uebimiau Webmail allows remote attackers to obtain sensitive information via a request to demo/pop3/error.php with an invalid value of the (1) smarty or (2) selected_theme parameter, which reveals the path in various error messages.

  • CVE-2007-3172Jun 11, 2007
    risk 0.00cvss —epss 0.02

    Directory traversal vulnerability in demo/pop3/error.php in Uebimiau Webmail allows remote attackers to determine the existence of arbitrary directories via an absolute pathname and .. (dot dot) in the selected_theme parameter.

  • CVE-2007-3173Jun 11, 2007
    risk 0.00cvss —epss 0.01

    Almnzm allows remote attackers to obtain sensitive information via an activateorder request to index.php with an invalid orderid parameter, probably related to '[' and ']' characters.

  • CVE-2007-3174Jun 11, 2007
    risk 0.00cvss —epss 0.01

    Cross-site scripting (XSS) vulnerability in auth.w2b in W2B Online Banking allows remote attackers to inject arbitrary web script or HTML via the adtype parameter, a different vector than CVE-2006-1980.

  • CVE-2007-3175Jun 11, 2007
    risk 0.01cvss —epss 0.17

    Multiple SQL injection vulnerabilities in W2B Online Banking allow remote attackers to execute arbitrary SQL commands via (1) the draft parameter to mailer.w2b or (2) the listDocPay parameter to DocPay.w2b.

  • CVE-2007-3176Jun 11, 2007
    risk 0.00cvss —epss 0.01

    Unspecified vulnerability in Ingate Firewall and SIParator before 4.5.2 allows remote authenticated users without full privileges to download a Support Report.

  • CVE-2007-3177Jun 11, 2007
    risk 0.00cvss —epss 0.01

    Ingate Firewall and SIParator before 4.5.2 allow remote attackers to bypass SIP authentication via a certain maddr parameter.

  • CVE-2007-3178Jun 11, 2007
    risk 0.00cvss —epss 0.01

    Multiple SQL injection vulnerabilities in Zindizayn Okul Web Sistemi 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) id or (2) pass parameter to (a) mezungiris.asp or (b) ogretmenkontrol.asp.

  • CVE-2006-3974Jun 11, 2007
    risk 0.03cvss —epss 0.02

    Cross-site scripting (XSS) vulnerability in cgi-bin/admin in 3Com OfficeConnect Secure Router with firmware 1.04-168 allows remote attackers to inject arbitrary web script or HTML via the tk parameter.

  • CVE-2007-3150Jun 11, 2007
    risk 0.00cvss —epss 0.01

    Google Desktop allows user-assisted remote attackers to execute arbitrary programs via a man-in-the-middle attack that injects JavaScript, a www.google.com search IFRAME, and a META HTTP-EQUIV="refresh" that targets a www.google.com search for a local .exe file, which is…

  • CVE-2007-3141Jun 11, 2007
    risk 0.03cvss —epss 0.02

    PHP remote file inclusion vulnerability in core/editor.php in phpWebThings 1.5.2 allows remote attackers to execute arbitrary PHP code via a URL in the editor_insert_top parameter. NOTE: the editor_insert_bottom vector is already covered by CVE-2006-6042.

  • CVE-2007-3142Jun 11, 2007
    risk 0.00cvss —epss 0.01

    Visual truncation vulnerability in Opera 9.21 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostname, which is truncated after 34 characters, as demonstrated by a phishing attack using HTTP Basic Authentication.

  • CVE-2007-3143Jun 11, 2007
    risk 0.00cvss —epss 0.02

    Visual truncation vulnerability in Konqueror 3.5.5 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostname, which is truncated after a certain number of characters, as demonstrated by a phishing attack using HTTP Basic…

  • CVE-2007-3144Jun 11, 2007
    risk 0.00cvss —epss 0.01

    Visual truncation vulnerability in Mozilla 1.7.12 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostname, which is truncated after a certain number of characters, as demonstrated by a phishing attack using HTTP Basic…

  • CVE-2007-3145Jun 11, 2007
    risk 0.00cvss —epss 0.01

    Visual truncation vulnerability in Galeon 2.0.1 allows remote attackers to spoof the address bar and possibly conduct phishing attacks via a long hostname, which is truncated after a certain number of characters, as demonstrated by a phishing attack using HTTP Basic…

  • CVE-2007-3146Jun 11, 2007
    risk 0.00cvss —epss 0.01

    Zen Help Desk 2.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing a password via a direct request for ZenHelpDesk.mdb.

  • CVE-2007-3147Jun 11, 2007
    risk 0.06cvss —epss 0.40

    Buffer overflow in the Yahoo! Webcam Upload ActiveX control in ywcupl.dll 2.0.1.4 for Yahoo! Messenger 8.1.0.249 allows remote attackers to execute arbitrary code via a long server property value to the send method. NOTE: some of these details are obtained from third party…

  • CVE-2007-3148Jun 11, 2007
    risk 0.04cvss —epss 0.12

    Buffer overflow in the Yahoo! Webcam Viewer ActiveX control in ywcvwr.dll 2.0.1.4 for Yahoo! Messenger 8.1.0.249 allows remote attackers to execute arbitrary code via a long server property value to the receive method.

  • CVE-2007-3149Jun 11, 2007
    risk 0.00cvss —epss 0.00

    sudo, when linked with MIT Kerberos 5 (krb5), does not properly check whether a user can currently authenticate to Kerberos, which allows local users to gain privileges, in a manner unintended by the sudo security model, via certain KRB5_ environment variable settings. NOTE:…

  • CVE-2007-1685Jun 8, 2007
    risk 0.04cvss —epss 0.14

    Buffer overflow in k9filter.exe in BlueCoat K9 Web Protection 3.2.36, and probably other versions before 3.2.44, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request to port 2372.

  • CVE-2007-3130Jun 8, 2007
    risk 0.03cvss —epss 0.04

    Multiple PHP remote file inclusion vulnerabilities in the OpenWiki (formerly JD-Wiki) component (com_jd-wiki) 1.0.2, and possibly earlier, for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to (1) dwpage.php or (2)…

  • CVE-2007-3131Jun 8, 2007
    risk 0.00cvss —epss 0.01

    Cross-site scripting (XSS) vulnerability in add_comment.php in Light Blog 4.1 before 20070606 allows remote attackers to inject arbitrary web script or HTML via the id parameter.

  • CVE-2007-3132Jun 8, 2007
    risk 0.00cvss —epss 0.02

    Multiple vulnerabilities in Symantec Ghost Solution Suite 2.0.0 and earlier, with Ghost 8.0.992 and possibly other versions, allow remote attackers to cause a denial of service (client or server crash) via malformed requests to the daemon port, 1346/udp or 1347/udp.