CVE Feed

    Dashboard / CVE

    6
    Medium

    CVE-2007-5918

    Last Modified: 23 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in edit.php in the MS TopSites add-on for PHP-Nuke does not verify that the uname parameter matches the current account, which allows remote authenticated users to change arbitrary accounts or change the SiteTitleName field as an arbitrary user via a modified uname value in an edit action to modules.php.

    Published: 10 Nov 2007
    6.8
    Medium

    CVE-2007-5917

    Last Modified: 23 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in admin/admin_account.php in Skalinks 1.5 and earlier allows remote attackers to add arbitrary privileged accounts as administrators via the admin_name, admin_password, admin_type, and Add_admin parameters.

    Published: 10 Nov 2007
    7.5
    High

    CVE-2007-5912

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in mailer.php in jPORTAL 2 allows remote attackers to execute arbitrary SQL commands via the to parameter.

    Published: 10 Nov 2007
    6.8
    Medium

    CVE-2007-5920

    Last Modified: 23 Apr 2026

    index.php in Domenico Mancini PicoFlat CMS before 0.4.18 allows remote attackers to include certain files via unspecified vectors, possibly due to a directory traversal vulnerability. NOTE: this can be leveraged to bypass authentication and upload files by including pico_insert.php or unspecified other administrative scripts. NOTE: some of these details are obtained from third party information.

    Published: 10 Nov 2007
    4.7
    Medium

    CVE-2007-5921

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the ioctl interface in the Solaris Volume Manager (SVM) in Sun Solaris 9 and 10 allows local users to cause a denial of service (panic) via unspecified vectors, a different vulnerability than CVE-2004-1346.

    Published: 10 Nov 2007
    5
    Medium

    CVE-2007-5922

    Last Modified: 23 Apr 2026

    The modules/mdop.m in the Cypress 1.0k script for BitchX, as downloaded from a distribution site in November 2007, contains an externally introduced backdoor that e-mails sensitive information (hostnames, usernames, and shell history) to a fixed address.

    Published: 10 Nov 2007
    4.3
    Medium

    CVE-2007-5923

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in forms/smpwservices.fcc in CA (formerly Computer Associates) eTrust SiteMinder Agent allows remote attackers to inject arbitrary web script or HTML via the SMAUTHREASON parameter, a different vector than CVE-2005-2204.

    Published: 10 Nov 2007
    4.3
    Medium

    CVE-2007-5924

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the Web Server (HTTP) task in IBM Lotus Domino before 6.5.6 FP2, and 7.x before 7.0.2 FP2, allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.

    Published: 10 Nov 2007
    9.3
    Critical

    CVE-2007-5910

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Autonomy (formerly Verity) KeyView Viewer, Filter, and Export SDK before 9.2.0.12, as used by ActivePDF DocConverter, wp6sr.dll in IBM Lotus Notes 8.0 and before 7.0.3, Symantec Mail Security, and other products, allows remote attackers to execute arbitrary code via a crafted WordPerfect (WPD) file.

    Published: 10 Nov 2007
    6.8
    Medium

    CVE-2007-5914

    Last Modified: 23 Apr 2026

    Direct static code injection vulnerability in dirsys/modules/config/post.php in JBC Explorer 7.20 RC1 and earlier allows remote authenticated administrators to inject arbitrary PHP code via the DEBUG parameter, which can be executed by accessing config.inc.php. NOTE: this can be exploited by unauthenticated remote attackers by leveraging CVE-2007-5913.

    Published: 10 Nov 2007
    7.5
    High

    CVE-2007-5916

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the login page in phphelpdesk 0.6.16 allows remote attackers to execute arbitrary SQL commands via unspecified parameters related to the "login procedures."

    Published: 10 Nov 2007
    6.8
    Medium

    CVE-2007-5396

    Last Modified: 23 Apr 2026

    Format string vulnerability in the ext_yahoo_contact_added function in yahoo.c in Miranda IM 0.7.1 allows remote attackers to execute arbitrary code via a Y7 Buddy Authorization packet with format string specifiers in the contact Yahoo! handle (who).

    Published: 10 Nov 2007
    8.5
    High

    CVE-2007-5897

    Last Modified: 23 Apr 2026

    Buffer overflow in MDSYS.SDO_CS in Oracle Database Server 8iR3, 9iR1, 9iR2 up to 9.2.0.6, and 10gR1 up to 10.1.0.4 allows remote authenticated users to cause a denial of service (crash) and execute arbitrary code via the TRANSFORM function. NOTE: this issue might already be covered by CVE-2007-5515, CVE-2007-5509, or CVE-2007-5505, but there are insufficient details to be sure.

    Published: 8 Nov 2007
    7.1
    High

    CVE-2007-5896

    Last Modified: 23 Apr 2026

    Mozilla Firefox 2.0.0.9 allows remote attackers to cause a denial of service (CPU consumption and crash) via an iframe with Javascript that sets the document.location to contain a leading NULL byte (\x00) and a (1) res://, (2) about:config, or (3) file:/// URI.

    Published: 8 Nov 2007
    6
    Medium

    CVE-2007-4517

    Last Modified: 23 Apr 2026

    Buffer overflow in the XDB.XDB_PITRIG_PKG.PITRIG_DROPMETADATA procedure in Oracle 10g R2 allows remote authenticated users to execute arbitrary code via a long (1) OWNER or (2) NAME argument.

    Published: 8 Nov 2007
    7.5
    High

    CVE-2007-5766

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in okxLOV.jsp in Oracle E-Business Suite 11 and 12 allows remote attackers to execute arbitrary SQL commands via unknown vectors. NOTE: this is probably the same issue as CVE-2007-5527 or CVE-2007-5528, but there are insufficient details to be sure.

    Published: 8 Nov 2007
    3.3
    Low

    CVE-2007-3921

    Last Modified: 23 Apr 2026

    gforge 3.1 and 4.5.14 allows local users to truncate arbitrary files via a symlink attack on temporary files.

    Published: 8 Nov 2007
    10
    Critical

    CVE-2007-4223

    Last Modified: 23 Apr 2026

    Dbgv.sys in Microsoft Sysinternals DebugView before 4.72 provides an unspecified mechanism for copying data into kernel memory, which allows local users to gain privileges via unspecified vectors.

    Published: 8 Nov 2007
    4.3
    Medium

    CVE-2007-5581

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in mpweb/scripts/mpx.dll in Cisco Unified MeetingPlace 5.4 and earlier and 6.0 allow remote attackers to inject arbitrary web script or HTML via the (1) FirstName and (2) LastName parameters.

    Published: 8 Nov 2007
    10
    Critical

    CVE-2007-5889

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in IDMOS 1.0 Alpha (aka Phoenix) allow remote attackers to execute arbitrary PHP code via a URL in the site_absolute_path parameter to (1) admin.php, (2) menu_add.php, and (3) menu_operation.php in administrator/, different vectors than CVE-2007-5294.

    Published: 8 Nov 2007
    10
    Critical

    CVE-2007-5890

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in easyGB 2.1.1 allows remote attackers to include arbitrary files via the DatabaseType parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 8 Nov 2007
    4.3
    Medium

    CVE-2007-5891

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in jsp/Login.do in ManageEngine OpManager MSP Edition and OpManager 7.0 allow remote attackers to inject arbitrary web script or HTML via the (1) requestid, (2) fileid, (3) woMode, and (2) woID parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 8 Nov 2007
    10
    Critical

    CVE-2007-5892

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the pdg2.dll ActiveX control in SSReader 4.0 and earlier allow remote attackers to execute arbitrary code via a long argument to the Register method. NOTE: some details were obtained from third party sources.

    Published: 8 Nov 2007
    5
    Medium

    CVE-2007-5893

    Last Modified: 23 Apr 2026

    HTTPSocket.cpp in the C++ Sockets Library before 2.2.5 allows remote attackers to cause a denial of service (crash) via an HTTP request with a missing protocol version number, which triggers an exception. NOTE: some of these details were obtained from third party information.

    Published: 8 Nov 2007
    6.8
    Medium

    CVE-2007-5904

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in CIFS VFS in Linux kernel 2.6.23 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long SMB responses that trigger the overflows in the SendReceive function.

    Published: 8 Nov 2007
    4.3
    Medium

    CVE-2007-5899

    Last Modified: 23 Apr 2026

    The output_add_rewrite_var function in PHP before 5.2.5 rewrites local forms in which the ACTION attribute references a non-local URL, which allows remote attackers to obtain potentially sensitive information by reading the requests for this URL, as demonstrated by a rewritten form containing a local session ID.

    Published: 8 Nov 2007
    Unknown

    CVE-2007-5908

    Last Modified: 7 Nov 2023

    Buffer overflow in the (1) sysfs_show_available_clocksources and (2) sysfs_show_current_clocksources functions in Linux kernel 2.6.23 and earlier might allow local users to cause a denial of service or execute arbitrary code via crafted clock source names. NOTE: follow-on analysis by Linux developers states that "There is no way for unprivileged users (or really even the root user) to add new clocksources.

    Published: 8 Nov 2007
    6.4
    Medium

    CVE-2007-5898

    Last Modified: 23 Apr 2026

    The (1) htmlentities and (2) htmlspecialchars functions in PHP before 5.2.5 accept partial multibyte sequences, which has unknown impact and attack vectors, a different issue than CVE-2006-5465.

    Published: 8 Nov 2007
    4.3
    Medium

    CVE-2007-5888

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in displayecard.php in Coppermine Photo Gallery (CPG) before 1.4.14 allows remote attackers to inject arbitrary web script or HTML via the data parameter.

    Published: 7 Nov 2007
    7.5
    High

    CVE-2007-5887

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in boards/printer.asp in ASP Message Board 2.2.1c allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 7 Nov 2007
    9.3
    Critical

    CVE-2007-2395

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via a crafted image description atom in a movie file, related to "memory corruption."

    Published: 7 Nov 2007
    9.3
    Critical

    CVE-2007-4676

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via malformed elements when parsing (1) Poly type (0x0070 through 0x0074) and (2) PackBitsRgn field (0x0099) opcodes in a PICT image.

    Published: 7 Nov 2007
    9.3
    Critical

    CVE-2007-4677

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via an invalid color table size when parsing the color table atom (CTAB) in a movie file, related to the CTAB RGB values.

    Published: 7 Nov 2007
    9.3
    Critical

    CVE-2007-3750

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via crafted Sample Table Sample Descriptor (STSD) atoms in a movie file.

    Published: 7 Nov 2007
    7.6
    High

    CVE-2007-4672

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via an invalid UncompressedQuickTimeData opcode length in a PICT image.

    Published: 7 Nov 2007
    9.3
    Critical

    CVE-2007-4675

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the QuickTime VR extension 7.2.0.240 in QuickTime.qts in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via a QTVR (QuickTime Virtual Reality) movie file containing a large size field in the atom header of a panorama sample atom.

    Published: 7 Nov 2007
    9.3
    Critical

    CVE-2007-3751

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in QuickTime for Java in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via untrusted Java applets that gain privileges via unspecified vectors.

    Published: 7 Nov 2007
    9.3
    Critical

    CVE-2007-5393

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the CCITTFaxStream::lookChar method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbitrary code via a PDF file that contains a crafted CCITTFaxDecode filter.

    Published: 7 Nov 2007
    Unknown

    CVE-2006-7224

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-7227, CVE-2005-4872, CVE-2006-7228. Reason: this candidate was SPLIT into other identifiers in order to reflect different affected versions and distinct vendor fixes. Notes: All CVE users should consult CVE-2006-7227, CVE-2005-4872, and CVE-2006-7228 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 7 Nov 2007
    7.6
    High

    CVE-2007-4352

    Last Modified: 23 Apr 2026

    Array index error in the DCTStream::readProgressiveDataUnit method in xpdf/Stream.cc in Xpdf 3.02pl1, as used in poppler, teTeX, KDE, KOffice, CUPS, and other products, allows remote attackers to trigger memory corruption and execute arbitrary code via a crafted PDF file.

    Published: 7 Nov 2007
    9.3
    Critical

    CVE-2007-5392

    Last Modified: 23 Apr 2026

    Integer overflow in the DCTStream::reset method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbitrary code via a crafted PDF file, resulting in a heap-based buffer overflow.

    Published: 7 Nov 2007
    10
    Critical

    CVE-2007-5395

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the separate_word function in tokenize.c in Link Grammar 4.1b and possibly other versions, as used in AbiWord Link Grammar 4.2.4, allows remote attackers to execute arbitrary code via a long word, as reachable through the separate_sentence function.

    Published: 7 Nov 2007
    6.8
    Medium

    CVE-2006-7228

    Last Modified: 23 Apr 2026

    Integer overflow in Perl-Compatible Regular Expression (PCRE) library before 6.7 might allow context-dependent attackers to execute arbitrary code via a regular expression that involves large (1) min, (2) max, or (3) duplength values that cause an incorrect length calculation and trigger a buffer overflow, a different vulnerability than CVE-2006-7227. NOTE: this issue was originally subsumed by CVE-2006-7224, but that CVE has been REJECTED and split.

    Published: 7 Nov 2007
    1.9
    Low

    CVE-2007-4570

    Last Modified: 23 Apr 2026

    Algorithmic complexity vulnerability in the MCS translation daemon in mcstrans 0.2.3 allows local users to cause a denial of service (temporary daemon outage) via a large range of compartments in sensitivity labels.

    Published: 7 Nov 2007
    10
    Critical

    CVE-2007-6721

    Last Modified: 23 Apr 2026

    The Legion of the Bouncy Castle Java Cryptography API before release 1.38, as used in Crypto Provider Package before 1.36, has unknown impact and remote attack vectors related to "a Bleichenbacher vulnerability in simple RSA CMS signatures without signed attributes."

    Published: 7 Nov 2007
    6.8
    Medium

    CVE-2006-7227

    Last Modified: 23 Apr 2026

    Integer overflow in Perl-Compatible Regular Expression (PCRE) library before 6.7 allows context-dependent attackers to execute arbitrary code via a regular expression containing a large number of named subpatterns (name_count) or long subpattern names (max_name_size), which triggers a buffer overflow. NOTE: this issue was originally subsumed by CVE-2006-7224, but that CVE has been REJECTED and split.

    Published: 7 Nov 2007
    6.8
    Medium

    CVE-2007-5842

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Vortex Portal 1.0.42 allow remote attackers to execute arbitrary PHP code via a URL in the cfgProgDir parameter to (1) admincp/auth/secure.php or (2) admincp/auth/checklogin.php.

    Published: 6 Nov 2007
    6.8
    Medium

    CVE-2007-5840

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in starnet/themes/c-sky/main.inc.php in Fred Stuurman SyndeoCMS 2.5.01 allows remote attackers to execute arbitrary PHP code via a URL in the cmsdir parameter, a different vector than CVE-2006-4920.2.

    Published: 6 Nov 2007
    6.8
    Medium

    CVE-2007-5841

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in admin/index.php in nuBoard 0.5 allows remote attackers to execute arbitrary PHP code via a URL in the site parameter.

    Published: 6 Nov 2007
    7.5
    High

    CVE-2007-5845

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in error.php in GuppY 4.6.3, 4.5.16, and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the id parameter. NOTE: this can be leveraged to bypass authentication and upload arbitrary files by including admin/inc/upload.inc and specifying certain multipart/form-data input for admin/inc/upload.inc.

    Published: 6 Nov 2007