CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-2007-6193

    Last Modified: 23 Apr 2026

    The web management interface in Citrix NetScaler 8.0 build 47.8 stores the device's primary IP address in a cookie, which might allow remote attackers to obtain sensitive network configuration information if this address is not the same as the address being used by the web interface.

    Published: 30 Nov 2007
    6.5
    Medium

    CVE-2007-6170

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the Call Detail Record Postgres logging engine (cdr_pgsql) in Asterisk 1.4.x before 1.4.15, 1.2.x before 1.2.25, B.x before B.2.3.4, and C.x before C.1.0-beta6 allows remote authenticated users to execute arbitrary SQL commands via (1) ANI and (2) DNIS arguments.

    Published: 30 Nov 2007
    5
    Medium

    CVE-2007-6187

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in PHP Content Architect (aka NoAh) 0.9 pre 1.2 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the filepath parameter to (1) css_file.php, (2) js_file.php, or (3) xml_file.php in noah/modules/nosystem/templates/.

    Published: 30 Nov 2007
    7.5
    High

    CVE-2007-6171

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the Postgres Realtime Engine (res_config_pgsql) in Asterisk 1.4.x before 1.4.15 and C.x before C.1.0-beta6 allows remote attackers to execute arbitrary SQL commands via unknown vectors.

    Published: 30 Nov 2007
    9.3
    Critical

    CVE-2007-6189

    Last Modified: 23 Apr 2026

    A certain ActiveX control in (1) OScan8.ocx and (2) Oscan81.ocx in BitDefender Online Anti-Virus Scanner 8.0 allows remote attackers to execute arbitrary code via a long argument to the InitX method that begins with a "%%" sequence, which is misinterpreted as a Unicode string and decoded twice, leading to improper memory allocation and a heap-based buffer overflow.

    Published: 30 Nov 2007
    4.3
    Medium

    CVE-2007-6192

    Last Modified: 23 Apr 2026

    The web management interface in Citrix NetScaler 8.0 build 47.8 uses weak encryption (XOR of unpadded data) to store credentials within a cookie, which makes it easier for remote attackers to obtain cleartext credentials when a cookie is captured via a known-plaintext attack.

    Published: 30 Nov 2007
    2.1
    Low

    CVE-2007-6150

    Last Modified: 23 Apr 2026

    The "internal state tracking" code for the random and urandom devices in FreeBSD 5.5, 6.1 through 6.3, and 7.0 beta 4 allows local users to obtain portions of previously-accessed random values, which could be leveraged to bypass protection mechanisms that rely on secrecy of those values.

    Published: 30 Nov 2007
    7.5
    High

    CVE-2007-6188

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in TuMusika Evolution 1.7R5 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the language parameter to (1) languages_n.php, (2) languages_f.php, or (3) languages.php in inc/; and (4) allow remote attackers to read arbitrary local files via a .. (dot dot) in the uri parameter to frames/nogui/sc_download.php.

    Published: 30 Nov 2007
    3.5
    Low

    CVE-2007-6190

    Last Modified: 23 Apr 2026

    The HTTP daemon in the Cisco Unified IP Phone, when the Extension Mobility feature is enabled, allows remote authenticated users of other phones associated with the same CUCM server to eavesdrop on the physical environment via a CiscoIPPhoneExecute message containing a URL attribute of an ExecuteItem element that specifies a Real-Time Transport Protocol (RTP) audio stream.

    Published: 30 Nov 2007
    8.5
    High

    CVE-2007-6174

    Last Modified: 23 Apr 2026

    PHPDevShell before 0.7.0 allows remote authenticated users to gain privileges via a crafted request to update a user profile. NOTE: some of these details are obtained from third party information.

    Published: 30 Nov 2007
    10
    Critical

    CVE-2007-6176

    Last Modified: 23 Apr 2026

    kb_whois.cgi in K+B-Bestellsystem (aka KB-Bestellsystem) allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) domain or (2) tld parameter in a check_owner action.

    Published: 30 Nov 2007
    6.6
    Medium

    CVE-2007-6175

    Last Modified: 23 Apr 2026

    Buffer overflow in Lhaplus 1.55 and earlier allows remote attackers to execute arbitrary code via a crafted LZH archive, a different vector than CVE-2007-5048.

    Published: 30 Nov 2007
    7.2
    High

    CVE-2007-6182

    Last Modified: 23 Apr 2026

    The responder program in ISPsystem ISPmanager (aka ISPmgr) 4.2.15.1 allows local users to gain privileges via shell metacharacters in command line arguments.

    Published: 30 Nov 2007
    7.5
    High

    CVE-2007-6184

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in Project Alumni 1.0.9 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the act parameter.

    Published: 30 Nov 2007
    7.5
    High

    CVE-2007-6185

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in users/files.php in Eurologon CMS allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter in a download action, as demonstrated by a certain PHP file containing database credentials.

    Published: 30 Nov 2007
    4.3
    Medium

    CVE-2007-6173

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in c/portal/login in Liferay Enterprise Portal 4.3.1 allows remote attackers to inject arbitrary web script or HTML via the emailAddress parameter in a Send New Password action, a different vector than CVE-2007-6055. NOTE: some of these details are obtained from third party information.

    Published: 30 Nov 2007
    7.5
    High

    CVE-2007-6179

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Charray's CMS 0.9.3 allow remote attackers to execute arbitrary PHP code via a URL in the ccms_library_path parameter to (1) markdown.php and (2) gallery.php in decoder/.

    Published: 30 Nov 2007
    8.5
    High

    CVE-2007-6181

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in cygwin1.dll in Cygwin 1.5.7 and earlier allows context-dependent attackers to execute arbitrary code via a filename with a certain length, as demonstrated by a remote authenticated user who uses the SCP protocol to send a file to the Cygwin machine, and thereby causes scp.exe on this machine to execute, and then overwrite heap memory with characters from the filename. NOTE: it is also reported that a related issue might exist in 1.5.7 through 1.5.19.

    Published: 30 Nov 2007
    10
    Critical

    CVE-2007-6172

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in wpQuiz 2.7 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) viewimage.php and (2) comments.php.

    Published: 30 Nov 2007
    7.5
    High

    CVE-2007-6177

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in Exchange/include.php in PHP_CON 1.3 allows remote attackers to execute arbitrary PHP code via a URL in the webappcfg[APPPATH] parameter.

    Published: 30 Nov 2007
    7.5
    High

    CVE-2007-6178

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Easy Hosting Control Panel for Ubuntu (EHCP) 0.22.8 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the confdir parameter to (1) dbutil.bck.php and (2) dbutil.php in config/.

    Published: 30 Nov 2007
    7.6
    High

    CVE-2007-6180

    Last Modified: 23 Apr 2026

    Race condition in the Remote Procedure Call kernel module (rpcmod) in Sun Solaris 8 through 10 allows local users to cause a denial of service (NULL dereference and panic) via unspecified vectors.

    Published: 30 Nov 2007
    4.3
    Medium

    CVE-2007-6203

    Last Modified: 23 Apr 2026

    Apache HTTP Server 2.0.x and 2.2.x does not sanitize the HTTP Method specifier header from an HTTP request when it is reflected back in a "413 Request Entity Too Large" error message, which might allow cross-site scripting (XSS) style attacks using web client components that can send arbitrary headers in requests, as demonstrated via an HTTP request containing an invalid Content-length value, a similar issue to CVE-2006-3918.

    Published: 30 Nov 2007
    10
    Critical

    CVE-2007-6186

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in PHPDevShell before 0.7.0 has unknown impact and attack vectors, involving a "minor security bug in repair & optimize database."

    Published: 30 Nov 2007
    7.8
    High

    CVE-2007-4347

    Last Modified: 23 Apr 2026

    Multiple integer overflows in the Job Engine (bengine.exe) service in Symantec Backup Exec for Windows Servers (BEWS) 11d build 11.0.7170 and 11.0.6.6235 allow remote attackers to cause a denial of service (CPU and memory consumption) via a crafted packet to port 5633/tcp, which triggers an infinite loop.

    Published: 29 Nov 2007
    5
    Medium

    CVE-2007-4346

    Last Modified: 23 Apr 2026

    The Job Engine (bengine.exe) service in Symantec Backup Exec for Windows Servers (BEWS) 11d build 11.0.7170 and 11.0.6.6235 allows remote attackers to cause a denial of service (NULL dereference and service crash) via a crafted packet to port 5633/tcp.

    Published: 29 Nov 2007
    4.3
    Medium

    CVE-2007-6157

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in SimpleGallery 0.1.3 allows remote attackers to inject arbitrary web script or HTML via the album parameter.

    Published: 29 Nov 2007
    7.5
    High

    CVE-2007-6158

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in caladmin.inc.php in Proverbs Web Calendar 1.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) loginname (aka Username) and (2) loginpass (aka Password) parameters to caladmin.php.

    Published: 29 Nov 2007
    7.5
    High

    CVE-2007-6159

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in Tilde CMS 4.x and earlier allows remote attackers to execute arbitrary SQL commands via the aarstal parameter in a yeardetail action, a different vector than CVE-2006-1500.

    Published: 29 Nov 2007
    4.3
    Medium

    CVE-2007-6160

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in Tilde CMS 4.x and earlier allows remote attackers to inject arbitrary web script or HTML via the aarstal parameter in a yeardetail action.

    Published: 29 Nov 2007
    5
    Medium

    CVE-2007-6161

    Last Modified: 23 Apr 2026

    index.php in Tilde CMS 4.x and earlier allows remote attackers to obtain sensitive information via a certain search parameter value in a search action, which reveals the path.

    Published: 29 Nov 2007
    7.2
    High

    CVE-2007-6167

    Last Modified: 23 Apr 2026

    Untrusted search path vulnerability in yast2-core in SUSE Linux might allow local users to execute arbitrary code by creating a malicious yast2 module in the current working directory.

    Published: 29 Nov 2007
    7.5
    High

    CVE-2007-6168

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in default.asp in VU Case Manager allows remote attackers to execute arbitrary SQL commands via the username parameter, a different vector than CVE-2007-6143. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 29 Nov 2007
    7.5
    High

    CVE-2007-6169

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in admin/index2.asp in GOUAE DWD Realty allows remote attackers to execute arbitrary SQL commands via the uname parameter, a different vector than CVE-2007-6163. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 29 Nov 2007
    7.5
    High

    CVE-2007-6163

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in admin/index2.asp in GOUAE DWD Realty allows remote attackers to execute arbitrary SQL commands via the pword (aka Password) parameter. NOTE: some of these details are obtained from third party information.

    Published: 29 Nov 2007
    9.3
    Critical

    CVE-2007-6166

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Apple QuickTime before 7.3.1, as used in QuickTime Player on Windows XP and Safari on Mac OS X, allows remote Real Time Streaming Protocol (RTSP) servers to execute arbitrary code via an RTSP response with a long Content-Type header.

    Published: 29 Nov 2007
    7.5
    High

    CVE-2007-6164

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Eurologon CMS allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) reviews.php, (2) links.php and (3) articles.php.

    Published: 29 Nov 2007
    9.3
    Critical

    CVE-2007-6165

    Last Modified: 23 Apr 2026

    Mail in Apple Mac OS X Leopard (10.5.1) allows user-assisted remote attackers to execute arbitrary code via an AppleDouble attachment containing an apparently-safe file type and script in a resource fork, which does not warn the user that a separate program is going to be executed. NOTE: this is a regression error related to CVE-2006-0395.

    Published: 29 Nov 2007
    4.3
    Medium

    CVE-2007-6156

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in base_qry_main.php in Base Analysis and Security Engine (BASE) before 1.3.9 allow remote attackers to inject arbitrary web script or HTML via the (1) sig[0] and (2) sig[1] parameters.

    Published: 29 Nov 2007
    4.3
    Medium

    CVE-2007-6162

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in FMDeluxe 2.1.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter in a category action.

    Published: 29 Nov 2007
    4.9
    Medium

    CVE-2007-5494

    Last Modified: 23 Apr 2026

    Memory leak in the Red Hat Content Accelerator kernel patch in Red Hat Enterprise Linux (RHEL) 4 and 5 allows local users to cause a denial of service (memory consumption) via a large number of open requests involving O_ATOMICLOOKUP.

    Published: 29 Nov 2007
    6.8
    Medium

    CVE-2007-5503

    Last Modified: 23 Apr 2026

    Multiple integer overflows in Cairo before 1.4.12 might allow remote attackers to execute arbitrary code, as demonstrated using a crafted PNG image with large width and height values, which is not properly handled by the read_png function.

    Published: 29 Nov 2007
    6.4
    Medium

    CVE-2007-5502

    Last Modified: 23 Apr 2026

    The PRNG implementation for the OpenSSL FIPS Object Module 1.1.1 does not perform auto-seeding during the FIPS self-test, which generates random data that is more predictable than expected and makes it easier for attackers to bypass protection mechanisms that rely on the randomness.

    Published: 29 Nov 2007
    7.8
    High

    CVE-2009-3613

    Last Modified: 23 Apr 2026

    The swiotlb functionality in the r8169 driver in drivers/net/r8169.c in the Linux kernel before 2.6.27.22 allows remote attackers to cause a denial of service (IOMMU space exhaustion and system crash) by using jumbo frames for a large amount of network traffic, as demonstrated by a flood ping.

    Published: 28 Nov 2007
    9.3
    Critical

    CVE-2007-6199

    Last Modified: 23 Apr 2026

    rsync before 3.0.0pre6, when running a writable rsync daemon that is not using chroot, allows remote attackers to access restricted files via unknown vectors that cause rsync to create a symlink that points outside of the module's hierarchy.

    Published: 28 Nov 2007
    10
    Critical

    CVE-2007-6200

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in rsync before 3.0.0pre6, when running a writable rsync daemon, allows remote attackers to bypass exclude, exclude_from, and filter and read or write hidden files via (1) symlink, (2) partial-dir, (3) backup-dir, and unspecified (4) dest options.

    Published: 28 Nov 2007
    7.2
    High

    CVE-2007-6417

    Last Modified: 23 Apr 2026

    The shmem_getpage function (mm/shmem.c) in Linux kernel 2.6.11 through 2.6.23 does not properly clear allocated memory in some rare circumstances related to tmpfs, which might allow local users to read sensitive kernel data or cause a denial of service (crash).

    Published: 28 Nov 2007
    6.8
    Medium

    CVE-2007-4674

    Last Modified: 23 Apr 2026

    An "integer arithmetic" error in Apple QuickTime 7.2 allows remote attackers to execute arbitrary code via a crafted movie file containing a movie atom with a large size value, which triggers a stack-based buffer overflow.

    Published: 27 Nov 2007
    5.8
    Medium

    CVE-2007-6133

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in admin/kfm/initialise.php in DevMass Shopping Cart 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the kfm_base_path parameter.

    Published: 27 Nov 2007
    7.5
    High

    CVE-2007-6137

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in news.php in Content Injector 1.52 allows remote attackers to execute arbitrary SQL commands via the cat parameter to index.php. NOTE: some of these details are obtained from third party information.

    Published: 27 Nov 2007