CVE Feed

    Dashboard / CVE

    3.6
    Low

    CVE-2007-5851

    Last Modified: 23 Apr 2026

    iChat in Apple Mac OS X 10.4.11 allows network-adjacent remote attackers to automatically initiate a video connection to another user via unknown vectors.

    Published: 19 Dec 2007
    9.3
    Critical

    CVE-2007-5853

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in IO Storage Family in Apple Mac OS X 10.4.11 allows user-assisted attackers to cause a denial of service (system shutdown) or execute arbitrary code via a disk image with crafted GUID partition maps, which triggers memory corruption.

    Published: 19 Dec 2007
    4.3
    Medium

    CVE-2007-5854

    Last Modified: 23 Apr 2026

    Launch Services in Apple Mac OS X 10.4.11 and 10.5.1 does not treat HTML files as unsafe content, which allows attackers to conduct cross-site scripting (XSS) attacks or obtain sensitive information via a crafted HTML file.

    Published: 19 Dec 2007
    6.4
    Medium

    CVE-2007-5855

    Last Modified: 23 Apr 2026

    Mail in Apple Mac OS X 10.4.11 and 10.5.1, when an SMTP account has been set up using Account Assistant, can use plaintext authentication even when MD5 Challenge-Response authentication is available, which makes it easier for remote attackers to sniff account activity.

    Published: 19 Dec 2007
    7.2
    High

    CVE-2007-5860

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Spin Tracer in Apple Mac OS X 10.5.1 allows local users to execute arbitrary code via unspecified output files, involving an "insecure file operation."

    Published: 19 Dec 2007
    6.4
    Medium

    CVE-2007-5857

    Last Modified: 23 Apr 2026

    Quick Look in Apple Mac OS X 10.5.1 does not prevent a movie from accessing URLs when the movie file is previewed or if an icon is created, which might allow remote attackers to obtain sensitive information via HREFTrack.

    Published: 19 Dec 2007
    6.6
    Medium

    CVE-2007-5847

    Last Modified: 23 Apr 2026

    Race condition in the CFURLWriteDataAndPropertiesToResource API in Core Foundation in Apple Mac OS X 10.4.11 creates files with insecure permissions, which might allow local users to obtain sensitive information.

    Published: 19 Dec 2007
    9.3
    Critical

    CVE-2007-5859

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Safari RSS in Apple Mac OS X 10.4.11 allows remote attackers to cause a denial of service (application termination) or execute arbitrary code via a crafted feed: URL that triggers memory corruption.

    Published: 19 Dec 2007
    6.8
    Medium

    CVE-2007-5861

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Spotlight in Apple Mac OS X 10.4.11 allows user-assisted attackers to cause a denial of service (application termination) or execute arbitrary code via a crafted .XLS file that triggers memory corruption in the Microsoft Office Spotlight Importer.

    Published: 19 Dec 2007
    6.6
    Medium

    CVE-2007-3876

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in SMB in Apple Mac OS X 10.4.11 allows local users to execute arbitrary code via (1) a long workgroup (-W) option to mount_smbfs or (2) an unspecified manipulation of the command line to smbutil.

    Published: 19 Dec 2007
    4.3
    Medium

    CVE-2007-5858

    Last Modified: 23 Apr 2026

    WebKit in Safari in Apple Mac OS X 10.4.11 and 10.5.1, iPhone 1.0 through 1.1.2, and iPod touch 1.1 through 1.1.2 allows remote attackers to "navigate the subframes of any other page," which can be leveraged to conduct cross-site scripting (XSS) attacks and obtain sensitive information.

    Published: 19 Dec 2007
    9.3
    Critical

    CVE-2007-5863

    Last Modified: 23 Apr 2026

    Software Update in Apple Mac OS X 10.5.1 allows remote attackers to execute arbitrary commands via a man-in-the-middle (MITM) attack between the client and the server, using a modified distribution definition file with the "allow-external-scripts" option.

    Published: 19 Dec 2007
    9.4
    Critical

    CVE-2007-5856

    Last Modified: 23 Apr 2026

    Quick Look Apple Mac OS X 10.5.1, when previewing an HTML file, does not prevent plug-ins from making network requests, which might allow remote attackers to obtain sensitive information.

    Published: 19 Dec 2007
    10
    Critical

    CVE-2007-6337

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the bzip2 decompression algorithm in nsis/bzlib_private.h in ClamAV before 0.92 has unknown impact and remote attack vectors.

    Published: 19 Dec 2007
    6.8
    Medium

    CVE-2007-6336

    Last Modified: 23 Apr 2026

    Off-by-one error in ClamAV before 0.92 allows remote attackers to execute arbitrary code via a crafted MS-ZIP compressed CAB file.

    Published: 19 Dec 2007
    4.3
    Medium

    CVE-2007-6514

    Last Modified: 23 Apr 2026

    Apache HTTP Server, when running on Linux with a document root on a Windows share mounted using smbfs, allows remote attackers to obtain unprocessed content such as source files for .php programs via a trailing "\" (backslash), which is not handled by the intended AddType directive.

    Published: 19 Dec 2007
    4.3
    Medium

    CVE-2007-6611

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in view.php in Mantis before 1.1.0 allows remote attackers to inject arbitrary web script or HTML via a filename, related to bug_report.php.

    Published: 19 Dec 2007
    9.4
    Critical

    CVE-2007-5862

    Last Modified: 23 Apr 2026

    Java in Mac OS X 10.4 through 10.4.11 allows remote attackers to bypass Keychain access controls and add or delete arbitrary Keychain items via a crafted Java applet.

    Published: 18 Dec 2007
    10
    Critical

    CVE-2007-6355

    Last Modified: 23 Apr 2026

    Integer overflow in exiftags before 1.01 has unknown impact and attack vectors, resulting from a "field offset overflow" that triggers an "illegal memory access," a different vulnerability than CVE-2007-6354.

    Published: 18 Dec 2007
    5
    Medium

    CVE-2007-6356

    Last Modified: 23 Apr 2026

    exiftags before 1.01 allows attackers to cause a denial of service (infinite loop) via recursive IFD references in the EXIF data in a JPEG image.

    Published: 18 Dec 2007
    10
    Critical

    CVE-2007-6354

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in exiftags before 1.01 has unknown impact and attack vectors, resulting from a "field offset overflow" that triggers an "illegal memory access," a different vulnerability than CVE-2007-6355.

    Published: 18 Dec 2007
    9.3
    Critical

    CVE-2007-6435

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Novell GroupWise before 6.5.7, when HTML preview of e-mail is enabled, allows user-assisted remote attackers to execute arbitrary code via a long SRC attribute in an IMG element when forwarding or replying to a crafted e-mail.

    Published: 18 Dec 2007
    7.5
    High

    CVE-2007-6433

    Last Modified: 23 Apr 2026

    The getRenderedEjbql method in the org.jboss.seam.framework.Query class in JBoss Seam 2.x before 2.0.0.CR3 allows remote attackers to inject and execute arbitrary EJBQL commands via the order parameter.

    Published: 18 Dec 2007
    9.3
    Critical

    CVE-2007-6436

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in JSGCI.DLL in JustSystems Ichitaro 2005, 2006, and 2007 allows user-assisted remote attackers to execute arbitrary code via a crafted document, as actively exploited in December 2007 by the Tarodrop.F trojan. NOTE: some of these details are obtained from third party information.

    Published: 18 Dec 2007
    4.3
    Medium

    CVE-2007-6424

    Last Modified: 23 Apr 2026

    registry.pl in Fonality Trixbox 2.0 PBX products, when running in certain environments, reads and executes a set of commands from a remote web site without sufficiently validating the origin of the commands, which allows remote attackers to disable trixbox and execute arbitrary commands via a DNS spoofing attack.

    Published: 18 Dec 2007
    7.8
    High

    CVE-2007-5583

    Last Modified: 23 Apr 2026

    Cisco IP Phone 7940 with firmware P0S3-08-7-00 allows remote attackers to cause a denial of service ("486 Busy" responses or device reboot) via a sequence of SIP INVITE transactions in which the Request-URI lacks a user name, a different vulnerability than CVE-2007-4459.

    Published: 18 Dec 2007
    2.1
    Low

    CVE-2007-6418

    Last Modified: 23 Apr 2026

    The libdspam7-drv-mysql cron job in Debian GNU/Linux includes the MySQL dspam database password in a command line argument, which might allow local users to read the password by listing the process and its arguments.

    Published: 18 Dec 2007
    6.1
    Medium

    CVE-2007-6439

    Last Modified: 23 Apr 2026

    Wireshark (formerly Ethereal) 0.99.6 allows remote attackers to cause a denial of service (infinite or large loop) via the (1) IPv6 or (2) USB dissector, which can trigger resource consumption or a crash. NOTE: this identifier originally included Firebird/Interbase, but it is already covered by CVE-2007-6116. The DCP ETSI issue is already covered by CVE-2007-6119.

    Published: 18 Dec 2007
    7.5
    High

    CVE-2007-6335

    Last Modified: 23 Apr 2026

    Integer overflow in libclamav in ClamAV before 0.92 allows remote attackers to execute arbitrary code via a crafted MEW packed PE file, which triggers a heap-based buffer overflow.

    Published: 18 Dec 2007
    5
    Medium

    CVE-2007-6438

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the SMB dissector in Wireshark (formerly Ethereal) 0.99.6 allows remote attackers to cause a denial of service via unknown vectors. NOTE: this identifier originally included MP3 and NCP, but those issues are already covered by CVE-2007-6111.

    Published: 18 Dec 2007
    3.3
    Low

    CVE-2007-6441

    Last Modified: 23 Apr 2026

    The WiMAX dissector in Wireshark (formerly Ethereal) 0.99.6 allows remote attackers to cause a denial of service (crash) via unknown vectors related to "unaligned access on some platforms."

    Published: 18 Dec 2007
    4.3
    Medium

    CVE-2007-6451

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the CIP dissector in Wireshark (formerly Ethereal) 0.9.14 to 0.99.6 allows remote attackers to cause a denial of service (crash) via unknown vectors that trigger allocation of large amounts of memory.

    Published: 18 Dec 2007
    5
    Medium

    CVE-2007-6450

    Last Modified: 23 Apr 2026

    The RPL dissector in Wireshark (formerly Ethereal) 0.9.8 to 0.99.6 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors.

    Published: 18 Dec 2007
    7.5
    High

    CVE-2007-6414

    Last Modified: 23 Apr 2026

    admin/administrator.php in Adult Script 1.6 and earlier sends a redirect to the web browser but does not exit, which allows remote attackers to bypass authentication and obtain administrative credentials via a direct request. NOTE: this can be leveraged for arbitrary code execution through a request to admin/videolinks_view.php.

    Published: 17 Dec 2007
    9.3
    Critical

    CVE-2007-6413

    Last Modified: 23 Apr 2026

    Sun Solaris 10 with the 120011-04 and 120012-04 patches, and later 120011-* and 120012-* patches, allows remote attackers to bypass certain netgroup restrictions and obtain root access to a filesystem via NFS requests from a client root user.

    Published: 17 Dec 2007
    10
    Critical

    CVE-2007-4473

    Last Modified: 23 Apr 2026

    Gesytec Easylon OPC Server before 2.3.44 does not properly validate server handles, which allows remote attackers to execute arbitrary code or cause a denial of service via unspecified network traffic to the OLE for Process Control (OPC) interface, probably related to free operations on arbitrary memory addresses through certain Remove functions, and read and write operations on arbitrary memory addresses through certain Set, Read, and Write functions.

    Published: 17 Dec 2007
    4.3
    Medium

    CVE-2007-6390

    Last Modified: 23 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in the mycalendar plugin before 0.13 for Serendipity allows remote attackers to perform actions as blog administrators, which can be leveraged to conduct cross-site scripting (XSS) attacks on the blog page.

    Published: 17 Dec 2007
    7.5
    High

    CVE-2007-6391

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in patch/comments.php in SH-News 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 17 Dec 2007
    7.5
    High

    CVE-2007-6392

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in DWdirectory 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the search parameter to the /search URI.

    Published: 17 Dec 2007
    5
    Medium

    CVE-2007-6398

    Last Modified: 23 Apr 2026

    Flat PHP Board 1.2 and earlier allows remote attackers to bypass authentication and obtain limited access to an arbitrary user account via the fpb_username cookie.

    Published: 17 Dec 2007
    6.5
    Medium

    CVE-2007-6399

    Last Modified: 23 Apr 2026

    index.php in Flat PHP Board 1.2 and earlier allows remote authenticated users to obtain the password for the current user account by reading the password parameter value in the HTML source for the page generated by a profile action.

    Published: 17 Dec 2007
    6.8
    Medium

    CVE-2007-6403

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Nullsoft Winamp 5.32 allows user-assisted remote attackers to execute arbitrary code via crafted unicode in a .mp4 file, with crafted tags, contained in a certain .rar archive, a related issue to CVE-2007-2498. NOTE: for exploitation, the victim must select a certain menu option at the time of the attack.

    Published: 17 Dec 2007
    5
    Medium

    CVE-2007-6404

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in Sergey Lyubka Simple HTTPD (shttpd) 1.38 and earlier on Windows allows remote attackers to read arbitrary files via a ..\ (dot dot backslash) in the URI.

    Published: 17 Dec 2007
    6.4
    Medium

    CVE-2007-6405

    Last Modified: 23 Apr 2026

    Sergey Lyubka Simple HTTPD (shttpd) 1.38 and earlier on Windows allows remote attackers to download arbitrary CGI programs or scripts via a URI with an appended (1) '+' character, (2) '.' character, (3) %2e sequence (hex-encoded dot), or (4) hex-encoded character greater than 0x7f. NOTE: the %20 vector is already covered by CVE-2007-3407.

    Published: 17 Dec 2007
    4.3
    Medium

    CVE-2007-6409

    Last Modified: 23 Apr 2026

    The gg protocol handler in Gadu-Gadu, when this product is installed but not running, does not properly handle the skin attribute, which allows remote attackers to cause a denial of service (resource consumption) via unspecified network traffic.

    Published: 17 Dec 2007
    4.3
    Medium

    CVE-2007-6410

    Last Modified: 23 Apr 2026

    Gadu-Gadu does not properly perform protocol handling, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks and add arbitrary user accounts or cause a denial of service as administrators via an unspecified "crafted link," possibly related to the gg protocol.

    Published: 17 Dec 2007
    4.3
    Medium

    CVE-2007-6411

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in the HandleEmotsConfig function in the GG Client in Gadu-Gadu 7.7 Build 3669 allow user-assisted remote attackers to execute arbitrary code or cause a denial of service (gg.exe process crash) via a long string in an emots.txt file.

    Published: 17 Dec 2007
    6.8
    Medium

    CVE-2007-6412

    Last Modified: 23 Apr 2026

    Direct static code injection vulnerability in wiki/index.php in Bitweaver 2.0.0 and earlier, when comments are enabled, allows remote attackers to inject arbitrary PHP code via an editcomments action.

    Published: 17 Dec 2007
    7.5
    High

    CVE-2007-6394

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in Content Injector 1.53 allows remote attackers to execute arbitrary SQL commands via the id parameter in an expand action.

    Published: 17 Dec 2007
    7.5
    High

    CVE-2007-6396

    Last Modified: 23 Apr 2026

    Direct static code injection vulnerability in index.php in Flat PHP Board 1.2 and earlier allows remote attackers to inject arbitrary PHP code via the (1) username, (2) password, and (3) email parameters when registering a user account, which can be executed by accessing the user's php file for this account. NOTE: similar code injection might be possible in a user profile.

    Published: 17 Dec 2007