CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2007-5699

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in eIQNetworks Enterprise Security Analyzer (ESA) 2.5 allows remote attackers to execute arbitrary code via certain data on TCP port 10616 that results in a long argument to the SEARCHREPORT command, a different vector than CVE-2007-2059.

    Published: 29 Oct 2007
    6.3
    Medium

    CVE-2007-5700

    Last Modified: 23 Apr 2026

    The Evaluate LotusScript method in IBM Lotus Domino before 7.0.3 uses an incorrect security context for @ formula commands in some circumstances, which might allow remote authenticated users to gain privileges and obtain sensitive information.

    Published: 29 Oct 2007
    7.8
    High

    CVE-2007-5544

    Last Modified: 23 Apr 2026

    IBM Lotus Notes before 6.5.6, and 7.x before 7.0.3; and Domino before 6.5.5 FP3, and 7.x before 7.0.2 FP1; uses weak permissions (Everyone:Full Control) for memory mapped files (shared memory) in IPC, which allows local users to obtain sensitive information, or inject Lotus Script or other character sequences into a session.

    Published: 29 Oct 2007
    6.8
    Medium

    CVE-2007-5697

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in PHP Image 1.2 allow remote attackers to execute arbitrary PHP code via a URL in the xarg parameter to (1) xarg_corner.php, (2) xarg_corner_bottom.php, and (3) xarg_corner_top.php.

    Published: 29 Oct 2007
    2.1
    Low

    CVE-2007-5701

    Last Modified: 23 Apr 2026

    Incomplete blacklist vulnerability in the Certificate Authority (CA) in IBM Lotus Domino before 7.0.3 allows local users, or attackers with physical access, to obtain sensitive information (passwords) when an administrator enters a "ca activate" or "ca unlock" command with any uppercase character, which bypasses a blacklist designed to suppress password logging, resulting in cleartext password disclosure in the console log and Admin panel.

    Published: 29 Oct 2007
    4.3
    Medium

    CVE-2007-5698

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in default.asp in CREApark GOLD KOY PORTALI allows remote attackers to inject arbitrary web script or HTML via the aranan parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 29 Oct 2007
    9
    Critical

    CVE-2007-3510

    Last Modified: 23 Apr 2026

    Buffer overflow in the IMAP service in IBM Lotus Domino before 6.5.6 FP2, and 7.x before 7.0.3, allows remote authenticated users to execute arbitrary code via a long mailbox name.

    Published: 29 Oct 2007
    6
    Medium

    CVE-2007-5693

    Last Modified: 23 Apr 2026

    Eval injection vulnerability in the translation module (translator.php) in SiteBar 3.3.8 allows remote authenticated users to execute arbitrary PHP code via the edit parameter in an upd cmd action, a different vulnerability than CVE-2007-5492.

    Published: 29 Oct 2007
    6.8
    Medium

    CVE-2007-5694

    Last Modified: 23 Apr 2026

    Absolute path traversal vulnerability in the translation module (translator.php) in SiteBar 3.3.8 allows remote authenticated users to read arbitrary files via an absolute path in the dir parameter, a different vulnerability than CVE-2007-5491.

    Published: 29 Oct 2007
    6.4
    Medium

    CVE-2007-5695

    Last Modified: 23 Apr 2026

    Open redirect vulnerability in command.php in SiteBar 3.3.8 allows remote attackers to redirect users to arbitrary web sites via a URL in the forward parameter in a Log In action.

    Published: 29 Oct 2007
    4.3
    Medium

    CVE-2007-5692

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in SiteBar 3.3.8 allow remote attackers to inject arbitrary web script or HTML via (1) the lang parameter to integrator.php; (2) the token parameter in a New Password action, (3) the nid_acl parameter in a Folder Properties action, or (4) the uid parameter in a Modify User action to command.php; or (5) the target parameter to index.php, different vectors than CVE-2006-3320.

    Published: 29 Oct 2007
    6.8
    Medium

    CVE-2007-5696

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes.php in phpBasic allows remote attackers to execute arbitrary PHP code via a URL in the root parameter, possibly related to the Music module.

    Published: 29 Oct 2007
    7.5
    High

    CVE-2007-5688

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in directory.php in the Multi-Forums (aka Multi Host Forum Pro) module 1.3.3, for phpBB and Invision Power Board (IPB or IP.Board), allow remote attackers to execute arbitrary SQL commands via the (1) go and (2) cat parameters.

    Published: 29 Oct 2007
    4.3
    Medium

    CVE-2007-5691

    Last Modified: 23 Apr 2026

    ParseFTPList.cpp in Mozilla Firefox 2.0.0.7 allows remote FTP servers to cause a denial of service (application crash) via a crafted reply to an unspecified listing command, related to "reading from invalid pointer."

    Published: 29 Oct 2007
    7.1
    High

    CVE-2007-5707

    Last Modified: 23 Apr 2026

    OpenLDAP before 2.3.39 allows remote attackers to cause a denial of service (slapd crash) via an LDAP request with a malformed objectClasses attribute. NOTE: this has been reported as a double free, but the reports are inconsistent.

    Published: 29 Oct 2007
    4.7
    Medium

    CVE-2007-5907

    Last Modified: 23 Apr 2026

    Xen 3.1.1 does not prevent modification of the CR4 TSC from applications, which allows pv guests to cause a denial of service (crash).

    Published: 29 Oct 2007
    7.1
    High

    CVE-2007-5708

    Last Modified: 23 Apr 2026

    slapo-pcache (overlays/pcache.c) in slapd in OpenLDAP before 2.3.39, when running as a proxy-caching server, allocates memory using a malloc variant instead of calloc, which prevents an array from being initialized properly and might allow attackers to cause a denial of service (segmentation fault) via unknown vectors that prevent the array from being null terminated.

    Published: 29 Oct 2007
    4.9
    Medium

    CVE-2007-5686

    Last Modified: 23 Apr 2026

    initscripts in rPath Linux 1 sets insecure permissions for the /var/log/btmp file, which allows local users to obtain sensitive information regarding authentication attempts. NOTE: because sshd detects the insecure permissions and does not log certain events, this also prevents sshd from logging failed authentication attempts by remote attackers.

    Published: 28 Oct 2007
    9.3
    Critical

    CVE-2007-5687

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in the rich text processing functionality in JustSystems Ichitaro 2004 through 2007, 11 through 13, and other versions allow remote attackers to execute arbitrary code via a long (1) pard field or (2) font name in the fcharset0 field, which is not properly handled in (a) JSTARO4.OCX; or (3) a long title, which is not properly handled by (b) TJSVDA.DLL.

    Published: 28 Oct 2007
    5
    Medium

    CVE-2007-5685

    Last Modified: 23 Apr 2026

    The safe_path function in shttp before 0.0.5 allows remote attackers to conduct directory traversal attacks and read files via a combination of ".." and sub-directory specifiers that resolve to a pathname that is at or below the same level as the web document root, but in a different part of the directory tree.

    Published: 28 Oct 2007
    5
    Medium

    CVE-2007-6341

    Last Modified: 23 Apr 2026

    Net/DNS/RR/A.pm in Net::DNS 0.60 build 654, as used in packages such as SpamAssassin and OTRS, allows remote attackers to cause a denial of service (program "croak") via a crafted DNS response.

    Published: 28 Oct 2007
    4.3
    Medium

    CVE-2007-5683

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in TikiWiki 1.9.8.1 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the username parameter to the password reminder page (tiki-remind_password.php), (2) IMG tags in wiki pages, and (3) the local_php parameter to db/tiki-db.php.

    Published: 26 Oct 2007
    7.5
    High

    CVE-2007-5684

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in TikiWiki 1.9.8.1 and earlier allow remote attackers to include and execute arbitrary files via an absolute pathname in (1) error_handler_file and (2) local_php parameters to (a) tiki-index.php, or (3) encoded "..%2F" sequences in the imp_language parameter to tiki-imexport_languages.php.

    Published: 26 Oct 2007
    7.5
    High

    CVE-2007-5682

    Last Modified: 23 Apr 2026

    Incomplete blacklist vulnerability in tiki-graph_formula.php in TikiWiki before 1.9.8.2 allows remote attackers to execute arbitrary code by using variable functions and variable variables to write variables whose names match the whitelist, a different vulnerability than CVE-2007-5423.

    Published: 26 Oct 2007
    9.3
    Critical

    CVE-2007-2983

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in the British Telecommunications Consumer webhelper ActiveX control before 2.0.0.8 in btwebcontrol.dll allow remote attackers to execute arbitrary code via unspecified vectors.

    Published: 25 Oct 2007
    7.5
    High

    CVE-2007-5679

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in DeeEmm.com DM CMS 0.7.0.Beta allows remote attackers to execute arbitrary SQL commands via the id parameter in the media page (build_media_content.php). NOTE: it was later reported that 0.7.4 is also affected.

    Published: 25 Oct 2007
    9.3
    Critical

    CVE-2007-5081

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in RealNetworks RealPlayer 8, 10, 10.1, and possibly 10.5; RealOne Player 1 and 2; and RealPlayer Enterprise allows remote attackers to execute arbitrary code via a crafted RM file.

    Published: 25 Oct 2007
    9.3
    Critical

    CVE-2007-2263

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in RealNetworks RealPlayer 10.0, 10.1, and possibly 10.5, RealOne Player, and RealPlayer Enterprise allows remote attackers to execute arbitrary code via an SWF (Flash) file with malformed record headers.

    Published: 25 Oct 2007
    9.3
    Critical

    CVE-2007-2264

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in RealNetworks RealPlayer 8, 10, 10.1, and possibly 10.5; RealOne Player 1 and 2; and RealPlayer Enterprise allows remote attackers to execute arbitrary code via a RAM (.ra or .ram) file with a large size value in the RA header.

    Published: 25 Oct 2007
    7.5
    High

    CVE-2007-5675

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the DebugPrint function in MultiXTpm Application Server before 4.0.2d allows remote attackers to execute arbitrary code via a long string argument.

    Published: 24 Oct 2007
    6.8
    Medium

    CVE-2007-5676

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in modules/Forums/favorites.php in PHP-Nuke Platinum 7.6.b.5 allows remote attackers to execute arbitrary PHP code via a URL in the nuke_bb_root_path parameter.

    Published: 24 Oct 2007
    4.3
    Medium

    CVE-2007-5677

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in shoutbox/blocco.php in Hackish BETA 1.1 allows remote attackers to inject arbitrary web script or HTML via the go_shout parameter.

    Published: 24 Oct 2007
    7.5
    High

    CVE-2007-5678

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the Music module in phpBasic allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action to the default URI.

    Published: 24 Oct 2007
    4.3
    Medium

    CVE-2007-5673

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in cgi-bin/webif.exe in ifnet WebIf allows remote attackers to inject arbitrary web script or HTML via the cmd parameter.

    Published: 24 Oct 2007
    6.8
    Medium

    CVE-2007-5674

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in InstaGuide Weather (aka Weather for PHP) 1.0, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the PageName parameter.

    Published: 24 Oct 2007
    4.3
    Medium

    CVE-2007-5335

    Last Modified: 23 Apr 2026

    Mozilla Firefox 2.0 before 2.0.0.8 allows remote attackers to obtain sensitive system information by using the addMicrosummaryGenerator sidebar method to access file: URIs.

    Published: 24 Oct 2007
    Unknown

    CVE-2007-5336

    Last Modified: 17 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-5339. Reason: This candidate is a reservation duplicate of CVE-2007-5339. Notes: All CVE users should reference CVE-2007-5339 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 24 Oct 2007
    6.8
    Medium

    CVE-2007-5642

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in PHP Project Management 0.8.10 and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) the def_lang parameter to modules/files/list.php; the m_path parameter to (2) modules/projects/summary.inc.php or (3) modules/tasks/summary.inc.php; (4) the module parameter to modules/projects/list.php; or the module parameter to index.php in the (5) certinfo, (6) emails, (7) events, (8) fax, (9) files, (10) groupadm, (11) history, (12) info, (13) log, (14) mail, (15) messages, (16) organizations, (17) phones, (18) presence, (19) projects, (20) reports, (21) search, (22) snf, (23) syslog, (24) tasks, or (25) useradm subdirectory of modules/.

    Published: 23 Oct 2007
    7.5
    High

    CVE-2007-5643

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Lussumo Vanilla 1.1.3 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the CategoryID parameter to ajax/sortcategories.php or (2) an unspecified vector to ajax/sortroles.php.

    Published: 23 Oct 2007
    7.5
    High

    CVE-2007-5644

    Last Modified: 23 Apr 2026

    Lussumo Vanilla 1.1.3 and earlier does not require admin privileges for (1) ajax/sortcategories.php and (2) ajax/sortroles.php, which allows remote attackers to conduct unauthorized sort operations and other activities.

    Published: 23 Oct 2007
    4.3
    Medium

    CVE-2007-5649

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in lostpwd.php in Creative Digital Resources SocketMail 2.2.1 allows remote attackers to inject arbitrary web script or HTML via the lost_id parameter.

    Published: 23 Oct 2007
    7.5
    High

    CVE-2007-5650

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in system.php in ReloadCMS 1.2.7 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the module parameter to index.php.

    Published: 23 Oct 2007
    7.8
    High

    CVE-2007-5652

    Last Modified: 23 Apr 2026

    IBM DB2 UDB 9.1 before Fixpak 4 does not properly manage storage of a list containing authentication information, which might allow attackers to cause a denial of service (instance crash) or trigger memory corruption. NOTE: the vendor description of this issue is too vague to be certain that it is security-related.

    Published: 23 Oct 2007
    4.3
    Medium

    CVE-2007-5647

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in SocketKB 1.1.5 allow remote attackers to inject arbitrary web script or HTML via the (1) art_id or (2) node parameter in an article action to the default URI.

    Published: 23 Oct 2007
    5
    Medium

    CVE-2007-5654

    Last Modified: 23 Apr 2026

    LiteSpeed Web Server before 3.2.4 allows remote attackers to trigger use of an arbitrary MIME type for a file via a "%00." sequence followed by a new extension, as demonstrated by reading PHP source code via requests for .php%00.txt files, aka "Mime Type Injection."

    Published: 23 Oct 2007
    6.8
    Medium

    CVE-2007-5641

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in PHP Project Management 0.8.10 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the full_path parameter to (1) certinfo/index.php, (2) emails/index.php, (3) events/index.php, (4) fax/index.php, (5) files/index.php, (6) files/list.php, (7) groupadm/index.php, (8) history/index.php, (9) info/index.php, (10) log/index.php, (11) mail/index.php, (12) messages/index.php, (13) organizations/index.php, (14) phones/index.php, (15) presence/index.php, (16) projects/index.php, (17) projects/summary.inc.php, (18) projects/list.php, (19) reports/index.php, (20) search/index.php, (21) snf/index.php, (22) syslog/index.php, (23) tasks/searchsimilar.php, (24) tasks/index.php, (25) tasks/summary.inc.php, and (26) useradm/index.php in modules; (27) /ajax/loadsplash.php; (28) /blocks/birthday.php; (29) /blocks/events.php; and (30) /blocks/help.php.

    Published: 23 Oct 2007
    4.3
    Medium

    CVE-2007-5648

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in rnote.php in rNote 0.9.7.5 allow remote attackers to inject arbitrary web script or HTML via the (1) d or the (2) u parameter.

    Published: 23 Oct 2007
    7.1
    High

    CVE-2007-5651

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Extensible Authentication Protocol (EAP) implementation in Cisco IOS 12.3 and 12.4 on Cisco Access Points and 1310 Wireless Bridges (Wireless EAP devices), IOS 12.1 and 12.2 on Cisco switches (Wired EAP devices), and CatOS 6.x through 8.x on Cisco switches allows remote attackers to cause a denial of service (device reload) via a crafted EAP Response Identity packet.

    Published: 23 Oct 2007
    6.8
    Medium

    CVE-2007-5646

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in Sources/Search.php in Simple Machines Forum (SMF) 1.1.3, when MySQL 5 is used, allows remote attackers to execute arbitrary SQL commands via the userspec parameter in a search2 action to index.php.

    Published: 23 Oct 2007
    9.3
    Critical

    CVE-2007-5653

    Last Modified: 23 Apr 2026

    The Component Object Model (COM) functions in PHP 5.x on Windows do not follow safe_mode and disable_functions restrictions, which allows context-dependent attackers to bypass intended limitations, as demonstrated by executing objects with the kill bit set in the corresponding ActiveX control Compatibility Flags, executing programs via a function in compatUI.dll, invoking wscript.shell via wscript.exe, invoking Scripting.FileSystemObject via wshom.ocx, and adding users via a function in shgina.dll, related to the com_load_typelib function.

    Published: 23 Oct 2007