VYPR

CVEs

382,326 total · page 7188 of 7,647

  • CVE-2006-7041Feb 23, 2007
    risk 0.00cvss —epss 0.02

    The SMTP service in MERCUR Messaging 2005 before Service Pack 4 allows remote attackers to cause a denial of service (infinite loop) via a message in which neither the originator nor recipient address is known.

  • CVE-2007-0320Feb 23, 2007
    risk 0.00cvss —epss 0.05

    Multiple buffer overflows in (a) an ActiveX control (iftw.dll) and (b) Netscape plug-in (npiftw32.dll) for Macrovision (formerly InstallShield) InstallFromTheWeb allow remote attackers to execute arbitrary code via crafted HTML documents.

  • CVE-2007-0321Feb 23, 2007
    risk 0.01cvss —epss 0.07

    Buffer overflow in the Update Service Agent ActiveX Control in isusweb.dll for Macrovision FLEXnet Connect (formerly InstallShield Update Service) allows remote attackers to execute arbitrary code via the Download method.

  • CVE-2007-1085Feb 23, 2007
    risk 0.04cvss —epss 0.11

    Cross-site scripting (XSS) vulnerability in Google Desktop allows remote attackers to bypass protection schemes and inject arbitrary web script or HTML, and possibly gain full access to the system, by using an XSS vulnerability in google.com to extract the signature for the…

  • CVE-2007-0843Feb 23, 2007
    risk 0.03cvss —epss 0.03

    The ReadDirectoryChangesW API function on Microsoft Windows 2000, XP, Server 2003, and Vista does not check permissions for child objects, which allows local users to bypass permissions by opening a directory with LIST (READ) access and using ReadDirectoryChangesW to monitor…

  • CVE-2007-1083Feb 23, 2007
    risk 0.01cvss —epss 0.08

    Buffer overflow in the Configuration Checker (ConfigChk) ActiveX control in VSCnfChk.dll 2.0.0.2 for Verisign Managed PKI Service, Secure Messaging for Microsoft Exchange, and Go Secure! allows remote attackers to execute arbitrary code via long arguments to the VerCompare…

  • CVE-2007-1084Feb 23, 2007
    risk 0.00cvss —epss 0.02

    Mozilla Firefox 2.0.0.1 and earlier does not prompt users before saving bookmarklets, which allows remote attackers to bypass the same-domain policy by tricking a user into saving a bookmarklet with a data: scheme, which is executed in the context of the last visited web page.

  • CVE-2007-1076Feb 22, 2007
    risk 0.03cvss —epss 0.04

    Multiple directory traversal vulnerabilities in phpTrafficA 1.4.1, and possibly earlier, allow remote attackers to include arbitrary local files via a .. (dot dot) in the (1) file parameter to plotStat.php and the (2) lang parameter to banref.php.

  • CVE-2007-1077Feb 22, 2007
    risk 0.03cvss —epss 0.01

    SQL injection vulnerability in page.asp in Design4Online UserPages2 2.0 allows remote attackers to execute arbitrary SQL commands via the art_id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

  • CVE-2007-1078Feb 22, 2007
    risk 0.03cvss —epss 0.03

    PHP remote file inclusion vulnerability in index.php in FlashGameScript 1.5.4 allows remote attackers to execute arbitrary PHP code via a URL in the func parameter.

  • CVE-2007-1079Feb 22, 2007
    risk 0.03cvss —epss 0.03

    Stack-based buffer overflow in Rhino Software, Inc. FTP Voyager 14.0.0.3 and earlier allows remote servers to cause a denial of service (crash) via a long response to a CWD command, which triggers the overflow when the user aborts the command.

  • CVE-2007-1080Feb 22, 2007
    risk 0.03cvss —epss 0.04

    Multiple heap-based buffer overflows in TurboFTP 5.30 Build 572 allow remote servers to cause a denial of service via (1) long filename in a response to a LIST command, and (2) a long response to a CWD command.

  • CVE-2007-1081Feb 22, 2007
    risk 0.00cvss —epss 0.01

    The start function in class.t3lib_formmail.php in TYPO3 before 4.0.5, 4.1beta, and 4.1RC1 allows attackers to inject arbitrary email headers via unknown vectors. NOTE: some details were obtained from third party information.

  • CVE-2007-1082Feb 22, 2007
    risk 0.03cvss —epss 0.03

    FTP Explorer 1.0.1 Build 047, and other versions before 1.0.1.52, allows remote servers to cause a denial of service (CPU consumption) via a long response to a PWD command.

  • CVE-2007-1071Feb 22, 2007
    risk 0.04cvss —epss 0.18

    Integer overflow in the gifGetBandProc function in ImageIO in Apple Mac OS X 10.4.8 allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image that triggers the overflow during decompression. NOTE: this…

  • CVE-2007-1072Feb 22, 2007
    risk 0.00cvss —epss 0.00

    The command line interface (CLI) in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier allows local users to obtain privileges or cause a denial of service via unspecified vectors. NOTE: this issue can be leveraged remotely…

  • CVE-2007-1073Feb 22, 2007
    risk 0.00cvss —epss 0.02

    Static code injection vulnerability in install.php in mcRefer allows remote attackers to execute arbitrary PHP code via the bgcolor parameter, which is inserted into mcrconf.inc.php.

  • CVE-2007-1074Feb 22, 2007
    risk 0.04cvss —epss 0.07

    Multiple buffer overflows in NewsBin Pro 5.33 and NewsBin Pro 4.x allow user-assisted remote attackers to execute arbitrary code via a long (1) DataPath or (2) DownloadPath attributed in a (a) NBI file, or (3) a long group field in a (b) NZB file.

  • CVE-2007-1075Feb 22, 2007
    risk 0.03cvss —epss 0.03

    TurboFTP 5.30 Build 572 allows remote servers to cause a denial of service (CPU consumption) via a response with a large number of newline characters.

  • CVE-2006-6490Feb 22, 2007
    risk 0.01cvss —epss 0.10

    Multiple buffer overflows in the SupportSoft (1) SmartIssue (tgctlsi.dll) and (2) ScriptRunner (tgctlsr.dll) ActiveX controls, as used by Symantec Automated Support Assistant and Norton AntiVirus, Internet Security, and System Works 2006, allows remote attackers to execute…

  • CVE-2007-1062Feb 22, 2007
    risk 0.00cvss —epss 0.04

    The Cisco Unified IP Conference Station 7935 3.2(15) and earlier, and Station 7936 3.3(12) and earlier does not properly handle administrator HTTP sessions, which allows remote attackers to bypass authentication controls via a direct URL request to the administrative HTTP…

  • CVE-2007-1063Feb 22, 2007
    risk 0.00cvss —epss 0.03

    The SSH server in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier, uses a hard-coded username and password, which allows remote attackers to access the device.

  • CVE-2007-1064Feb 22, 2007
    risk 0.00cvss —epss 0.00

    Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client do not drop privileges when the help facility in the supplicant GUI is…

  • CVE-2007-1065Feb 22, 2007
    risk 0.00cvss —epss 0.00

    Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client allows local users to gain SYSTEM privileges via unspecified vectors in the…

  • CVE-2007-1066Feb 22, 2007
    risk 0.00cvss —epss 0.00

    Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client use an insecure default Discretionary Access Control Lists (DACL) for the…

  • CVE-2007-1067Feb 22, 2007
    risk 0.00cvss —epss 0.00

    Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client do not properly parse commands, which allows local users to gain privileges…

  • CVE-2007-1068Feb 22, 2007
    risk 0.00cvss —epss 0.00

    The (1) TTLS CHAP, (2) TTLS MSCHAP, (3) TTLS MSCHAPv2, (4) TTLS PAP, (5) MD5, (6) GTC, (7) LEAP, (8) PEAP MSCHAPv2, (9) PEAP GTC, and (10) FAST authentication methods in Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1…

  • CVE-2007-1059Feb 22, 2007
    risk 0.03cvss —epss 0.03

    PHP remote file inclusion vulnerability in function.php in Ultimate Fun Book 1.02 allows remote attackers to execute arbitrary PHP code via a URL in the gbpfad parameter. NOTE: some sources mention "Ultimate Fun Board," but this appears to be an error.

  • CVE-2007-1060Feb 22, 2007
    risk 0.04cvss —epss 0.08

    Multiple PHP remote file inclusion vulnerabilities in Interspire SendStudio 2004.14 and earlier, when register_globals and allow_fopenurl are enabled, allow remote attackers to execute arbitrary PHP code via a URL in the ROOTDIR parameter to (1) createemails.inc.php and (2)…

  • CVE-2007-1061Feb 22, 2007
    risk 0.08cvss —epss 0.62

    SQL injection vulnerability in index.php in Francisco Burzi PHP-Nuke 8.0 Final and earlier, when the "HTTP Referers" block is enabled, allows remote attackers to execute arbitrary SQL commands via the HTTP Referer header (HTTP_REFERER variable).

  • CVE-2007-1050Feb 21, 2007
    risk 0.03cvss —epss 0.05

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in AbleDesign MyCalendar allow remote attackers to inject arbitrary web script or HTML via (1) the go parameter, (2) the keyword parameter in the search menu (go=search), or (3) the username or (4) the password in…

  • CVE-2007-1051Feb 21, 2007
    risk 0.00cvss —epss 0.00

    Comodo Firewall Pro (formerly Comodo Personal Firewall) 2.4.17.183 and earlier uses a weak cryptographic hashing function (CRC32) to identify trusted modules, which allows local users to bypass security protections by substituting modified modules that have the same CRC32 value.

  • CVE-2007-1052Feb 21, 2007
    risk 0.00cvss —epss 0.02

    PHP remote file inclusion vulnerability in index.php in PBLang (PBL) 4.60 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the dbpath parameter, a different vector than CVE-2006-5062. NOTE: this issue has been disputed by a reliable third party for…

  • CVE-2007-1053Feb 21, 2007
    risk 0.00cvss —epss 0.02

    Multiple PHP remote file inclusion vulnerabilities in phpXmms 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the tcmdp parameter to (1) phpxmmsb.php or (2) phpxmmst.php. NOTE: this issue has been disputed by a reliable third party, stating that the tcmdp…

  • CVE-2007-1054Feb 21, 2007
    risk 0.00cvss —epss 0.02

    Cross-site scripting (XSS) vulnerability in the AJAX features in index.php in MediaWiki 1.6.x through 1.9.2, when $wgUseAjax is enabled, allows remote attackers to inject arbitrary web script or HTML via a UTF-7 encoded value of the rs parameter, which is processed by Internet…

  • CVE-2007-1055Feb 21, 2007
    risk 0.00cvss —epss 0.02

    Cross-site scripting (XSS) vulnerability in the AJAX features in index.php in MediaWiki 1.9.x before 1.9.0rc2, and 1.8.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the rs parameter. NOTE: this issue might be a duplicate of CVE-2007-0177.

  • CVE-2007-1056Feb 21, 2007
    risk 0.00cvss —epss 0.00

    VMware Workstation 5.5.3 build 34685 does not provide per-user restrictions on certain privileged actions, which allows local users to perform restricted operations such as changing system time, accessing hardware components, and stopping the "VMware tools service" service.…

  • CVE-2007-1057Feb 21, 2007
    risk 0.03cvss —epss 0.01

    The Net Direct client for Linux before 6.0.5 in Nortel Application Switch 2424, VPN 3050 and 3070, and SSL VPN Module 1000 extracts and executes files with insecure permissions, which allows local users to exploit a race condition to replace a world-writable file in…

  • CVE-2007-1058Feb 21, 2007
    risk 0.03cvss —epss 0.01

    SQL injection vulnerability in user_pages/page.asp in Online Web Building 2.0 allows remote attackers to execute arbitrary SQL commands via the art_id parameter.

  • CVE-2007-1037Feb 21, 2007
    risk 0.03cvss —epss 0.06

    Stack-based buffer overflow in News File Grabber 4.1.0.1 and earlier allows remote attackers to execute arbitrary code via a .nzb file with a long subject field. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

  • CVE-2007-1038Feb 21, 2007
    risk 0.00cvss —epss 0.01

    Shemes.com Grabit 1.5.3, and possibly earlier, allows remote attackers to cause a denial of service (application crash) via a .nzb file with a subject field containing ';' (semicolon) characters. NOTE: the provenance of this information is unknown; the details are obtained…

  • CVE-2007-1039Feb 21, 2007
    risk 0.00cvss —epss 0.02

    Unspecified vulnerability in Peanut Knowledge Base (PeanutKB) 0.0.3 and earlier has unknown impact and attack vectors.

  • CVE-2007-1040Feb 21, 2007
    risk 0.03cvss —epss 0.03

    Directory traversal vulnerability in archives.php in Xpression News (X-News) 1.0.1 allows remote attackers to include arbitrary files or obtain sensitive information via a .. (dot dot) in the xnews-template parameter.

  • CVE-2007-1041Feb 21, 2007
    risk 0.04cvss —epss 0.07

    Multiple stack-based buffer overflows in S&H Computer Systems News Rover 12.1 Rev 1 allow remote attackers to execute arbitrary code via a .nzb file with a long (1) group or (2) subject string.

  • CVE-2007-1042Feb 21, 2007
    risk 0.00cvss —epss 0.01

    Directory traversal vulnerability in news.php in Xpression News (X-News) 1.0.1, when magic_quotes_gpc is disabled, allows remote attackers to include arbitrary files or obtain sensitive information via a .. (dot dot) in the xnews-template parameter. NOTE: the provenance of this…

  • CVE-2007-1043Feb 21, 2007
    risk 0.04cvss —epss 0.08

    Ezboo webstats, possibly 3.0.3, allows remote attackers to bypass authentication and gain access via a direct request to (1) update.php and (2) config.php.

  • CVE-2007-1044Feb 21, 2007
    risk 0.04cvss —epss 0.09

    Pearson Education PowerSchool 4.3.6 allows remote attackers to list the contents of the admin folder via a URI composed of the admin/ directory name and an arbitrary filename ending in ".js." NOTE: it was later reported that this issue had been addressed by 5.1.2.

  • CVE-2007-1045Feb 21, 2007
    risk 0.00cvss —epss 0.04

    mAlbum 0.3 has default accounts (1) "login"/"pass" for its administrative account and (2) "dqsfg"/"sdfg", which allows remote attackers to gain privileges.

  • CVE-2007-1046Feb 21, 2007
    risk 0.00cvss —epss 0.02

    Dem_trac allows remote attackers to read log file contents via a direct request for /anc_sit.txt.

  • CVE-2007-1047Feb 21, 2007
    risk 0.00cvss —epss 0.02

    Unspecified vulnerability in Distributed Checksum Clearinghouse (DCC) before 1.3.51 allows remote attackers to delete or add hosts in /var/dcc/maps.