CVE Feed

    Dashboard / CVE

    10
    Critical

    CVE-2007-5483

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Administrative Scripting Tools (such as wsadmin or ANT) in IBM WebSphere Application Server 5.x and 6.0.x has unknown impact and attack vectors.

    Published: 16 Oct 2007
    5
    Medium

    CVE-2007-5484

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in wxis.exe in WWWISIS 7.1 allows local users to read arbitrary files via a .. (dot dot) in the IsisScript parameter to iah.

    Published: 16 Oct 2007
    7.5
    High

    CVE-2007-5485

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in the mg2 1.0 module for KwsPHP allows remote attackers to execute arbitrary SQL commands via the album parameter.

    Published: 16 Oct 2007
    7.8
    High

    CVE-2007-5471

    Last Modified: 23 Apr 2026

    libgssapi before 0.6-13.7, as used by the ISC BIND named daemon in SUSE Linux Enterprise Server 10 SP 1, terminates upon an initialization error, which allows remote attackers to cause a denial of service (daemon exit) via a GSS-TSIG request. NOTE: this issue probably affects other daemons that attempt to initialize this library within a chroot configuration or other invalid configuration.

    Published: 16 Oct 2007
    2.1
    Low

    CVE-2007-5470

    Last Modified: 23 Apr 2026

    Microsoft Expression Media stores the catalog password in cleartext in the catalog IVC file, which allows local users to obtain sensitive information and gain access to the catalog by reading the IVC file.

    Published: 16 Oct 2007
    5
    Medium

    CVE-2007-5469

    Last Modified: 23 Apr 2026

    OpenSER 1.2.2 does not verify the Digest authentication header URI against the Request URI in SIP messages, which allows remote attackers to use sniffed Digest authentication credentials to call arbitrary telephone numbers or spoof caller ID (aka "toll fraud and authentication forward attack"). NOTE: Debian disputes this issue, stating that "having the two URIs mismatch is allowed by the standard and happens in some setups for valid reasons.

    Published: 16 Oct 2007
    5
    Medium

    CVE-2007-5468

    Last Modified: 23 Apr 2026

    Cisco CallManager 5.1.1.3000-5 does not verify the Digest authentication header URI against the Request URI in SIP messages, which allows remote attackers to use sniffed Digest authentication credentials to call arbitrary telephone numbers or spoof caller ID (aka "toll fraud and authentication forward attack").

    Published: 16 Oct 2007
    10
    Critical

    CVE-2007-5467

    Last Modified: 23 Apr 2026

    Integer overflow in eXtremail 2.1.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long USER command containing "%s" sequences to the pop3 port (110/tcp), which are expanded to "%%s" before being used in the memmove function, possibly due to an incomplete fix for CVE-2001-1078.

    Published: 15 Oct 2007
    10
    Critical

    CVE-2007-5466

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in eXtremail 2.1.1 and earlier allow remote attackers to (1) have an unknown impact by sending multiple long strings to the IMAP port (143/tcp); (2) execute arbitrary code via a long string in an IMAP AUTHENTICATE PLAIN action, involving the ifParseAuthPlain function; (3) execute arbitrary code via a long LOGIN command to the admin interface port (4501/tcp); or (4) execute arbitrary code via a long string in an IMAP AUTHENTICATE LOGIN (aka CRAM-MD5 authentication) action, involving the ifProcImapAuth1 function.

    Published: 15 Oct 2007
    7.5
    High

    CVE-2007-5465

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in doop CMS 1.3.7 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter to an unspecified component.

    Published: 15 Oct 2007
    6.5
    Medium

    CVE-2007-5464

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Live for Speed 0.5X10 and earlier allows remote authenticated users to cause a denial of service (client crash) and possibly execute arbitrary code via a long skin name.

    Published: 15 Oct 2007
    5
    Medium

    CVE-2007-5463

    Last Modified: 23 Apr 2026

    ideal_process.php in the iDEAL payment module in ViArt Shop 3.3 beta and earlier might allow remote attackers to obtain the pathname for certificate and key files via an "iDEAL transaction", possibly involving fopen error messages for nonexistent files, a different issue than CVE-2007-5364. NOTE: this can be leveraged for reading certificate or key files if an installation places these files under the web document root.

    Published: 15 Oct 2007
    7.8
    High

    CVE-2007-5462

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Sun Solaris RPC services library (librpcsvc) on Solaris 8 through 10 allows remote attackers to cause a denial of service (mountd crash) via unspecified packets to a server that exports many filesystems, and allows local users to cause a denial of service (automountd crash) via unspecified requests to mount filesystems from a server that exports many filesystems.

    Published: 15 Oct 2007
    4.6
    Medium

    CVE-2007-5460

    Last Modified: 23 Apr 2026

    Microsoft ActiveSync 4.1, as used in Windows Mobile 5.0, uses weak encryption (XOR obfuscation with a fixed key) when sending the user's PIN/Password over the USB connection from the host to the device, which might make it easier for attackers to decode a PIN/Password obtained by (1) sniffing or (2) spoofing the docking process.

    Published: 15 Oct 2007
    6.5
    Medium

    CVE-2007-6313

    Last Modified: 23 Apr 2026

    MySQL Server 5.1.x before 5.1.23 and 6.0.x before 6.0.4 does not check the rights of the entity executing BINLOG, which allows remote authorized users to execute arbitrary BINLOG statements.

    Published: 15 Oct 2007
    4.3
    Medium

    CVE-2007-5459

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the sidebar HTML page in the MouseoverDictionary before 0.6.2 extension for Mozilla Firefox allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 14 Oct 2007
    6.8
    Medium

    CVE-2007-5457

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Michael Dempfle Joomla Flash Uploader (com_jfu or com_joomla_flash_uploader) 2.5.1 component for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to (1) install.joomla_flash_uploader.php and (2) uninstall.joomla_flash_uploader.php.

    Published: 14 Oct 2007
    6.8
    Medium

    CVE-2007-5458

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in the newsletter module 1.0 for KwsPHP, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the newsletter parameter.

    Published: 14 Oct 2007
    7.5
    High

    CVE-2007-5456

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 7 and earlier allows remote attackers to bypass the "File Download - Security Warning" dialog box and download arbitrary .exe files by placing a '?' (question mark) followed by a non-.exe filename after the .exe filename, as demonstrated by (1) .txt, (2) .cda, (3) .log, (4) .dif, (5) .sol, (6) .htt, (7) .itpc, (8) .itms, (9) .dvr-ms, (10) .dib, (11) .asf, (12) .tif, and unspecified other extensions, a different issue than CVE-2004-1331. NOTE: this issue might not cross privilege boundaries, although it does bypass an intended protection mechanism.

    Published: 14 Oct 2007
    4.3
    Medium

    CVE-2007-5443

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in CMS Made Simple 1.1.3.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to (1) the anchor tag and (2) listtags.

    Published: 14 Oct 2007
    6.8
    Medium

    CVE-2007-5195

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in SUSE Linux Enterprise Desktop 10 allows remote attackers to obtain credentials via a man-in-the-middle attack, a different vulnerability than CVE-2007-5196.

    Published: 14 Oct 2007
    7.5
    High

    CVE-2007-5196

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the SSL implementation in Groupwise client system in the novell-groupwise-client package in SUSE Linux Enterprise Desktop 10 allows remote attackers to obtain credentials via a man-in-the-middle attack, a different vulnerability than CVE-2007-5195.

    Published: 14 Oct 2007
    6.4
    Medium

    CVE-2007-5446

    Last Modified: 23 Apr 2026

    Absolute path traversal vulnerability in a certain ActiveX control in PBEmail7Ax.dll in PBEmail 7 ActiveX Edition allows remote attackers to create or overwrite arbitrary files via a full pathname in the XmlFilePath argument to the SaveSenderToXml method.

    Published: 14 Oct 2007
    4.3
    Medium

    CVE-2007-5448

    Last Modified: 23 Apr 2026

    Madwifi 0.9.3.2 and earlier allows remote attackers to cause a denial of service (panic) via a beacon frame with a large length value in the extended supported rates (xrates) element, which triggers an assertion error, related to net80211/ieee80211_scan_ap.c and net80211/ieee80211_scan_sta.c.

    Published: 14 Oct 2007
    10
    Critical

    CVE-2007-5452

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in php-stats.recjs.php in Php-Stats 0.1.9.2 allow remote attackers to execute arbitrary SQL commands via the (1) ip or (2) t parameter.

    Published: 14 Oct 2007
    8.5
    High

    CVE-2007-5453

    Last Modified: 23 Apr 2026

    Multiple eval injection vulnerabilities in Php-Stats 0.1.9.2 allow remote authenticated administrators to execute arbitrary code by writing PHP sequences to the php-stats-options record in the _options table, which is used in an eval function call by (1) admin.php, (2) click.php, (3) download.php, and unspecified other files, as demonstrated by modifying _options through a backup restore action in admin.php.

    Published: 14 Oct 2007
    7.5
    High

    CVE-2007-5454

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in PHP File Sharing System 1.5.1 allows remote attackers to list or create arbitrary directories, or delete arbitrary files, as demonstrated by listing directories via a .. (dot dot) in the cam parameter.

    Published: 14 Oct 2007
    4.3
    Medium

    CVE-2007-5455

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in wxis.exe in WWWISIS 7.1 and earlier allows remote attackers to inject arbitrary web script or HTML via a call to the iah/iah.xis IsisScript code, possibly involving the lang or exprSearch parameter.

    Published: 14 Oct 2007
    3.5
    Low

    CVE-2007-5442

    Last Modified: 23 Apr 2026

    CMS Made Simple 1.1.3.1 does not check the permissions assigned to users who attempt uploads, which allows remote authenticated users to upload unspecified files via unknown vectors.

    Published: 14 Oct 2007
    9.3
    Critical

    CVE-2007-5450

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Safari on the Apple iPod touch (aka iTouch) and iPhone 1.1.1 allows user-assisted remote attackers to cause a denial of service (application crash), and enable filesystem browsing by the local user, via a certain TIFF file.

    Published: 14 Oct 2007
    7.5
    High

    CVE-2007-5449

    Last Modified: 6 Apr 2026

    SQL injection vulnerability in searchresult.php in Softbiz Recipes Portal Script allows remote attackers to execute arbitrary SQL commands via the sbcat_id parameter.

    Published: 14 Oct 2007
    5
    Medium

    CVE-2007-5444

    Last Modified: 23 Apr 2026

    CMS Made Simple 1.1.3.1 allows remote attackers to obtain the full path via a direct request for unspecified files.

    Published: 14 Oct 2007
    6.8
    Medium

    CVE-2007-5445

    Last Modified: 23 Apr 2026

    Buffer overflow in the DB Software Laboratory VImpX (VImpAX1) ActiveX control in VImpX.ocx 4.7.3.0 allows remote attackers to execute arbitrary code via a long RejectedRecordsFile parameter, a different vector than CVE-2007-2667.

    Published: 14 Oct 2007
    4.3
    Medium

    CVE-2007-5447

    Last Modified: 23 Apr 2026

    ioncube_loader_win_5.2.dll in the ionCube Loader 6.5 extension for PHP 5.2.4 does not follow safe_mode and disable_functions restrictions, which allows context-dependent attackers to bypass intended limitations, as demonstrated by reading arbitrary files via the ioncube_read_file function.

    Published: 14 Oct 2007
    6.8
    Medium

    CVE-2007-5451

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in admin.color.php in the com_colorlab (aka com_color) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.

    Published: 14 Oct 2007
    6.5
    Medium

    CVE-2007-5441

    Last Modified: 23 Apr 2026

    CMS Made Simple 1.1.3.1 does not check the permissions assigned to users in some situations, which allows remote authenticated users to perform some administrative actions, as demonstrated by (1) adding a user via a direct request to admin/adduser.php and (2) reading the admin log via an "admin/adminlog.php?page=1" request.

    Published: 14 Oct 2007
    7.5
    High

    CVE-2007-5440

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in CRS Manager allow remote attackers to execute arbitrary PHP code via a URL in the DOCUMENT_ROOT parameter to (1) index.php or (2) login.php. NOTE: this issue is disputed by CVE, since DOCUMENT_ROOT cannot be modified by an attacker

    Published: 14 Oct 2007
    3.3
    Low

    CVE-2007-5200

    Last Modified: 23 Apr 2026

    hugin, as used on various operating systems including SUSE openSUSE 10.2 and 10.3, allows local users to overwrite arbitrary files via a symlink attack on the hugin_debug_optim_results.txt temporary file.

    Published: 14 Oct 2007
    3.5
    Low

    CVE-2007-5461

    Last Modified: 23 Apr 2026

    Absolute path traversal vulnerability in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0, 5.0.0, 5.5.0 through 5.5.25, and 6.0.0 through 6.0.14, under certain configurations, allows remote authenticated users to read arbitrary files via a WebDAV write request that specifies an entity with a SYSTEM tag.

    Published: 14 Oct 2007
    7.6
    High

    CVE-2007-5436

    Last Modified: 23 Apr 2026

    Buffer overflow in a certain ActiveX control in ScanObjectBrowser.DLL in G DATA Antivirus 2007 might allow remote attackers to execute arbitrary code via unspecified parameters to the SelectPath function. NOTE: this issue might not cross privilege boundaries in most environments, since it is not marked as safe for scripting.

    Published: 13 Oct 2007
    5.8
    Medium

    CVE-2007-5437

    Last Modified: 23 Apr 2026

    The web console in CA (formerly Computer Associates) eTrust ITM (Threat Manager) 8.1 allows remote attackers to redirect users to arbitrary web sites via a crafted HTTP URL on port 6689.

    Published: 13 Oct 2007
    5
    Medium

    CVE-2007-5439

    Last Modified: 23 Apr 2026

    CA (formerly Computer Associates) eTrust ITM (Threat Manager) 8.1 stores sensitive user information in log files with predictable names, which allows remote attackers to obtain this information via unspecified vectors.

    Published: 13 Oct 2007
    4.3
    Medium

    CVE-2007-5435

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in CA ERwin Process Modeler (formerly AllFusion Process Modeler) 7.2 might allow user-assisted remote attackers to cause a denial of service via a crafted Data Standards File (Datatype Standards File).

    Published: 13 Oct 2007
    1.9
    Low

    CVE-2007-5438

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in a certain ActiveX control in Reconfig.DLL in VMware Workstation 5.5.x before 5.5.8 build 108000, VMware Workstation 6.0.x before 6.0.5 build 109488, VMware Player 1.x before 1.0.8 build 108000, VMware Player 2.x before 2.0.5 build 109488, VMware ACE 1.x before 1.0.7 build 108880, VMware ACE 2.x before 2.0.5 build 109488, and VMware Server before 1.0.7 build 108231 might allow local users to cause a denial of service to the Virtual Disk Mount Service (vmount2.exe), related to the ConnectPopulatedDiskEx function.

    Published: 13 Oct 2007
    10
    Critical

    CVE-2007-5327

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the RPC interface for the Message Engine (mediasvr.exe) in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to execute arbitrary code via a long argument in the 0x10d opnum.

    Published: 13 Oct 2007
    10
    Critical

    CVE-2007-5328

    Last Modified: 23 Apr 2026

    The Message Engine RPC service in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows attackers to execute arbitrary code by using certain "insecure method calls" to modify the file system and registry, aka "Privileged function exposure."

    Published: 13 Oct 2007
    10
    Critical

    CVE-2007-5330

    Last Modified: 23 Apr 2026

    The cadbd RPC service in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to (1) execute arbitrary code via stack-based buffer overflows in unspecified RPC procedures, and (2) trigger memory corruption related to the use of "handle" RPC arguments as pointers.

    Published: 13 Oct 2007
    Unknown

    CVE-2007-5324

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-2582. Reason: This candidate is a duplicate of CVE-2007-2582. Notes: All CVE users should reference CVE-2007-2582 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 13 Oct 2007
    10
    Critical

    CVE-2007-5332

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in (1) mediasvr and (2) caloggerd in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, have unknown impact and attack vectors related to memory corruption.

    Published: 13 Oct 2007
    10
    Critical

    CVE-2007-5325

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in (1) the Message Engine and (2) AScore.dll in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allow remote attackers to execute arbitrary code via unspecified vectors.

    Published: 13 Oct 2007