CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2007-5630

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in tnews.php in BBsProcesS BBPortalS 1.5.10 through 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter in a tnews action.

    Published: 23 Oct 2007
    4.9
    Medium

    CVE-2007-5632

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in the kernel in Sun Solaris 8 through 10 allow local users to cause a denial of service (panic), related to the support for retrieval of kernel statistics, and possibly related to the sfmmu_mlspl_enter or sfmmu_mlist_enter functions.

    Published: 23 Oct 2007
    4.3
    Medium

    CVE-2007-5638

    Last Modified: 23 Apr 2026

    The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and additional Nortel products from the IP Phone, Business Communications Manager (BCM), and other product lines, use only 65536 different values in the 32-bit ID number field of an RUDP datagram, which makes it easier for remote attackers to guess the RUDP ID and spoof messages. NOTE: this can be leveraged for an eavesdropping attack by sending many Open Audio Stream messages.

    Published: 23 Oct 2007
    4.9
    Medium

    CVE-2007-5634

    Last Modified: 23 Apr 2026

    Speedfan.sys in Alfredo Milani Comparetti SpeedFan 4.33, when used on Microsoft Windows Vista x64, does not properly check a buffer during an IOCTL 0x9c402420 call, which allows local users to cause a denial of service (machine crash) and possibly gain privileges via unspecified vectors.

    Published: 23 Oct 2007
    7.1
    High

    CVE-2007-5640

    Last Modified: 23 Apr 2026

    The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and additional Nortel products from the IP Phone, Business Communications Manager (BCM), Mobile Voice Client, and other product lines, allow remote attackers to block calls and force re-registration via a resume message to the Signaling Server that has a spoofed source IP address for the phone. NOTE: the attack is more disruptive if a new spoofed resume message is sent after each re-registration.

    Published: 23 Oct 2007
    6.8
    Medium

    CVE-2007-5631

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in PeopleAggregator 1.2pre6, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the current_blockmodule_path parameter to (1) AudiosMediaGalleryModule/AudiosMediaGalleryModule.php, (2) ImagesMediaGalleryModule/ImagesMediaGalleryModule.php, (3) MembersFacewallModule/MembersFacewallModule.php, (4) NewestGroupsModule/NewestGroupsModule.php, (5) UploadMediaModule/UploadMediaModule.php, and (6) VideosMediaGalleryModule/VideosMediaGalleryModule.php in BetaBlockModules/; and (7) the path_prefix parameter to several components.

    Published: 23 Oct 2007
    10
    Critical

    CVE-2007-5635

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in Salford Software Support Incident Tracker (SiT!) before 3.30 have unknown impact and attack vectors.

    Published: 23 Oct 2007
    7.5
    High

    CVE-2007-5636

    Last Modified: 23 Apr 2026

    Buffer overflow in the Nortel UNIStim IP Softphone 2050 allows remote attackers to cause a denial of service (application abort) and possibly execute arbitrary code via a flood of invalid characters to the RTCP port (5678/udp) that triggers a Windows error message, aka "extraneous messaging."

    Published: 23 Oct 2007
    4.3
    Medium

    CVE-2007-5637

    Last Modified: 23 Apr 2026

    The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and additional Nortel products from the IP Phone, Business Communications Manager (BCM), and other product lines allow remote attackers to eavesdrop on the physical environment via an Open Audio Stream message that enables "surveillance mode." NOTE: issues relating to a small ID number space can be leveraged to make this attack easier.

    Published: 23 Oct 2007
    7.1
    High

    CVE-2007-5639

    Last Modified: 23 Apr 2026

    The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and other Nortel IP Phone, Mobile Voice Client, and WLAN Handsets products allow remote attackers to cause a denial of service (device hang) via a flood of Mute and UnMute messages that have a spoofed source IP address for the Signaling Server.

    Published: 23 Oct 2007
    7.2
    High

    CVE-2007-5633

    Last Modified: 23 Apr 2026

    Speedfan.sys in Alfredo Milani Comparetti SpeedFan 4.33, when used on Microsoft Windows Vista x64, allows local users to read or write arbitrary MSRs, and gain privileges and load unsigned drivers, via the (1) IOCTL_RDMSR 0x9C402438 and (2) IOCTL_WRMSR 0x9C40243C IOCTLs to \Device\speedfan, as demonstrated by an IOCTL_WRMSR action on MSR_LSTAR.

    Published: 23 Oct 2007
    6.8
    Medium

    CVE-2007-5628

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in src/scripture.php in The Online Web Library Site (TOWels) 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the pageHeaderFile parameter.

    Published: 23 Oct 2007
    4.3
    Medium

    CVE-2007-5629

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in admin/logon.asp in ShoppingTree CandyPress Store 4.1 allows remote attackers to inject arbitrary web script or HTML via the msg parameter, a different vector than CVE-2007-2804. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 23 Oct 2007
    5.5
    Medium

    CVE-2007-5626

    Last Modified: 23 Apr 2026

    make_catalog_backup in Bacula 2.2.5, and probably earlier, sends a MySQL password as a command line argument, and sometimes transmits cleartext e-mail containing this command line, which allows context-dependent attackers to obtain the password by listing the process and its arguments, or by sniffing the network.

    Published: 23 Oct 2007
    6.8
    Medium

    CVE-2007-5627

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in content/fnc-readmail3.php in SocketMail 2.2.8 allows remote attackers to execute arbitrary PHP code via a URL in the __SOCKETMAIL_ROOT parameter.

    Published: 23 Oct 2007
    4.3
    Medium

    CVE-2007-5625

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in filename.asp in ASP Site Search SearchSimon Lite 1.0 allows remote attackers to inject arbitrary web script or HTML via the QUERY parameter.

    Published: 23 Oct 2007
    7.2
    High

    CVE-2007-5730

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in QEMU 0.8.2, as used in Xen and possibly other products, allows local users to execute arbitrary code via crafted data in the "net socket listen" option, aka QEMU "net socket" heap overflow. NOTE: some sources have used CVE-2007-1321 to refer to this issue as part of "NE2000 network driver and the socket code," but this is the correct identifier for the individual net socket listen vulnerability.

    Published: 23 Oct 2007
    6
    Medium

    CVE-2007-3919

    Last Modified: 23 Apr 2026

    (1) xenbaked and (2) xenmon.py in Xen 3.1 and earlier allow local users to truncate arbitrary files via a symlink attack on /tmp/xenq-shm.

    Published: 23 Oct 2007
    10
    Critical

    CVE-2007-5689

    Last Modified: 23 Apr 2026

    The Java Virtual Machine (JVM) in Sun Java Runtime Environment (JRE) in SDK and JRE 1.3.x through 1.3.1_20 and 1.4.x through 1.4.2_15, and JDK and JRE 5.x through 5.0 Update 12 and 6.x through 6 Update 2, allows remote attackers to execute arbitrary programs, or read or modify arbitrary files, via applets that grant privileges to themselves.

    Published: 23 Oct 2007
    7.5
    High

    CVE-2007-5620

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in admin/inc/help.php in ZZ:FlashChat 3.1 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the file parameter.

    Published: 22 Oct 2007
    3.5
    Low

    CVE-2007-5621

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in the Token module before 4.7.x-1.5, and 5.x before 5.x-1.9, for Drupal; as used by the ASIN Field, e-Commerce, Fullname field for CCK, Invite, Node Relativity, Pathauto, PayPal Node, and Ubercart modules; allow remote authenticated users with a post comments privilege to inject arbitrary web script or HTML via unspecified vectors related to (1) comments, (2) vocabulary names, (3) term names, and (4) usernames.

    Published: 22 Oct 2007
    4.3
    Medium

    CVE-2007-5190

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Alcatel OmniVista 4760 R4.2 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the action parameter to php-bin/Webclient.php or (2) the Langue parameter to the default URI.

    Published: 22 Oct 2007
    4.3
    Medium

    CVE-2007-5472

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the Server component in CA Host-Based Intrusion Prevention System (HIPS) before 8.0.0.93 allows remote attackers to inject arbitrary web script or HTML via requests that are written to logs for later display in the log viewer.

    Published: 22 Oct 2007
    6.8
    Medium

    CVE-2009-1722

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the compression implementation in OpenEXR 1.2.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors.

    Published: 22 Oct 2007
    4.7
    Medium

    CVE-2007-4574

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the "stack unwinder fixes" in kernel in Red Hat Enterprise Linux 5, when running on AMD64 and Intel 64, allows local users to cause a denial of service via unknown vectors.

    Published: 22 Oct 2007
    10
    Critical

    CVE-2007-5617

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in VMware Player 1.0.x before 1.0.5 and 2.0 before 2.0.1, and Workstation 5.x before 5.5.5 and 6.x before 6.0.1, prevents it from launching, which has unspecified impact, related to untrusted virtual machine images.

    Published: 21 Oct 2007
    7.2
    High

    CVE-2007-5618

    Last Modified: 23 Apr 2026

    Unquoted Windows search path vulnerability in the Authorization and other services in VMware Player 1.0.x before 1.0.5 and 2.0 before 2.0.1, VMware Server before 1.0.4, and Workstation 5.x before 5.5.5 and 6.x before 6.0.1 might allow local users to gain privileges via malicious programs.

    Published: 21 Oct 2007
    7.2
    High

    CVE-2007-5619

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in VMware Server before 1.0.4 causes user passwords to be recorded in cleartext in server logs, which might allow local users to gain privileges.

    Published: 21 Oct 2007
    6.8
    Medium

    CVE-2007-5828

    Last Modified: 23 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in the admin panel in Django 0.96 allows remote attackers to change passwords of arbitrary users via a request to admin/auth/user/1/password/. NOTE: this issue has been disputed by Debian, since product documentation includes a recommendation for a CSRF protection module that is included with the product. However, CVE considers this an issue because the default configuration does not use this module

    Published: 21 Oct 2007
    4.3
    Medium

    CVE-2007-5624

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Nagios 2.x before 2.10 allows remote attackers to inject arbitrary web script or HTML via unknown vectors to unspecified CGI scripts.

    Published: 21 Oct 2007
    9.3
    Critical

    CVE-2007-5601

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the Database Component in MPAMedia.dll in RealNetworks RealPlayer 10.5 and 11 beta, and earlier versions including 10, RealOne Player, and RealOne Player 2, allows remote attackers to execute arbitrary code via certain playlist names, as demonstrated via the import method to the IERPCtl ActiveX control in ierpplug.dll.

    Published: 20 Oct 2007
    4.6
    Medium

    CVE-2007-5690

    Last Modified: 23 Apr 2026

    Buffer overflow in sethdlc.c in the Asterisk Zaptel 1.4.5.1 might allow local users to gain privileges via a long device name (interface name) in the ifr_name field. NOTE: the vendor disputes this issue, stating that the application requires root access, so privilege boundaries are not crossed

    Published: 20 Oct 2007
    4.3
    Medium

    CVE-2007-5588

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in mnoGoSearch before 3.2.43 allows remote attackers to inject arbitrary web script or HTML via the t parameter in search.cgi, as reachable from search.htm-dist.

    Published: 19 Oct 2007
    4.3
    Medium

    CVE-2007-5597

    Last Modified: 23 Apr 2026

    The hook_comments API in Drupal 4.7.x before 4.7.8 and 5.x before 5.3 does not pass publication status, which might allow attackers to bypass access restrictions and trigger e-mail with unpublished comments from some modules, as demonstrated by (1) Organic groups and (2) Subscriptions.

    Published: 19 Oct 2007
    4.3
    Medium

    CVE-2007-5598

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Weblinks for Drupal 4.7.x before 4.7.x-1.0 and 5.x before 5.x-1.8 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 19 Oct 2007
    4.3
    Medium

    CVE-2007-5589

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.11.1.2 allow remote attackers to inject arbitrary web script or HTML via certain input available in (1) PHP_SELF in (a) server_status.php, and (b) grab_globals.lib.php, (c) display_change_password.lib.php, and (d) common.lib.php in libraries/; and certain input available in PHP_SELF and (2) PATH_INFO in libraries/common.inc.php. NOTE: there might also be other vectors related to (3) REQUEST_URI.

    Published: 19 Oct 2007
    6.8
    Medium

    CVE-2007-5593

    Last Modified: 23 Apr 2026

    install.php in Drupal 5.x before 5.3, when the configured database server is not reachable, allows remote attackers to execute arbitrary code via vectors that cause settings.php to be modified.

    Published: 19 Oct 2007
    6.8
    Medium

    CVE-2007-5590

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in Miranda before 0.7.1 allow remote attackers to execute arbitrary code via unspecified vectors involving (1) IRC options, (2) Jabber forms, and unspecified aspects of the (3) ICQ and (4) Yahoo! instant messaging functionality. NOTE: some of these details are obtained from third party information.

    Published: 19 Oct 2007
    7.8
    High

    CVE-2007-5591

    Last Modified: 23 Apr 2026

    The CS1000 signaling server in Nortel Enterprise VoIP-Core-CS 1000M Chassis/Cabinet, Enterprise VoIP-Core-CS 1000E and 1000S, Meridian-Core-Option 11C Chassis and Cabinet, and Meridian-Core-Option 51C, 61C, and 81C allows remote attackers to cause a denial of service (telephony application outage) via a flood of packets to Embedded LAN (ELAN) ports.

    Published: 19 Oct 2007
    5.1
    Medium

    CVE-2007-5595

    Last Modified: 23 Apr 2026

    CRLF injection vulnerability in the drupal_goto function in includes/common.inc Drupal 4.7.x before 4.7.8 and 5.x before 5.3 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.

    Published: 19 Oct 2007
    5
    Medium

    CVE-2007-5379

    Last Modified: 23 Apr 2026

    Rails before 1.2.4, as used for Ruby on Rails, allows remote attackers and ActiveResource servers to determine the existence of arbitrary files and read arbitrary XML files via the Hash.from_xml (Hash#from_xml) method, which uses XmlSimple (XML::Simple) unsafely, as demonstrated by reading passwords from the Pidgin (Gaim) .purple/accounts.xml file.

    Published: 19 Oct 2007
    6.8
    Medium

    CVE-2007-5380

    Last Modified: 23 Apr 2026

    Session fixation vulnerability in Rails before 1.2.4, as used for Ruby on Rails, allows remote attackers to hijack web sessions via unspecified vectors related to "URL-based sessions."

    Published: 19 Oct 2007
    6.8
    Medium

    CVE-2007-5592

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in awzMB 4.2 beta 1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the Setting[OPT_includepath] parameter to (1) adminhelp.php; and (2) admin.incl.php, (3) reg.incl.php, (4) help.incl.php, (5) gbook.incl.php, and (6) core/core.incl.php in modules/.

    Published: 19 Oct 2007
    4.3
    Medium

    CVE-2007-5594

    Last Modified: 23 Apr 2026

    Drupal 5.x before 5.3 does not apply its Drupal Forms API protection against the user deletion form, which allows remote attackers to delete users via a cross-site request forgery (CSRF) attack.

    Published: 19 Oct 2007
    4.3
    Medium

    CVE-2007-5596

    Last Modified: 23 Apr 2026

    The core Upload module in Drupal 4.7.x before 4.7.8 and 5.x before 5.3 places the .html extension on a whitelist, which allows remote attackers to conduct cross-site scripting (XSS) attacks by uploading .html files.

    Published: 19 Oct 2007
    6.8
    Medium

    CVE-2007-5599

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in awrate 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the toroot parameter to (1) 404.php or (2) topbar.php, different vectors than CVE-2006-6368.

    Published: 19 Oct 2007
    6.8
    Medium

    CVE-2007-5600

    Last Modified: 23 Apr 2026

    Incomplete blacklist vulnerability in index.php in Artmedic CMS 3.4 and earlier allows remote attackers to execute arbitrary PHP code via a (1) UNC share pathname, or a (2) ftps, (3) ssh2.sftp, or (4) ssh2.scp URL, in the page parameter, for which PHP remote file inclusion is blocked only for http, https, and ftp URLs.

    Published: 19 Oct 2007
    6.9
    Medium

    CVE-2007-5587

    Last Modified: 23 Apr 2026

    Buffer overflow in Macrovision SafeDisc secdrv.sys before 4.3.86.0, as shipped in Microsoft Windows XP SP2, XP Professional x64 and x64 SP2, Server 2003 SP1 and SP2, and Server 2003 x64 and x64 SP2 allows local users to overwrite arbitrary memory locations and gain privileges via a crafted argument to a METHOD_NEITHER IOCTL, as originally discovered in the wild.

    Published: 19 Oct 2007
    Unknown

    CVE-2007-5586

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-5587. Reason: This candidate is a duplicate of CVE-2007-5587. Notes: All CVE users should reference CVE-2007-5587 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 19 Oct 2007
    5
    Medium

    CVE-2007-5585

    Last Modified: 23 Apr 2026

    xscreensaver 5.03 and earlier, when running without xscreensaver-gl-extras (GL extras) installed, crashes when /usr/bin/xscreensaver-gl-helper does not exist and a user attempts to unlock the screen, which allows attackers with physical access to gain access to the locked session.

    Published: 19 Oct 2007