CVE Feed

    Dashboard / CVE

    2.6
    Low

    CVE-2007-5238

    Last Modified: 23 Apr 2026

    Java Web Start in Sun JDK and JRE 6 Update 2 and earlier, JDK and JRE 5.0 Update 12 and earlier, and SDK and JRE 1.4.2_15 and earlier does not properly enforce access restrictions for untrusted applications, which allows user-assisted remote attackers to obtain sensitive information (the Java Web Start cache location) via an untrusted application, aka "three vulnerabilities."

    Published: 3 Oct 2007
    4
    Medium

    CVE-2007-5239

    Last Modified: 23 Apr 2026

    Java Web Start in Sun JDK and JRE 6 Update 2 and earlier, JDK and JRE 5.0 Update 12 and earlier, SDK and JRE 1.4.2_15 and earlier, and SDK and JRE 1.3.1_20 and earlier does not properly enforce access restrictions for untrusted (1) applications and (2) applets, which allows user-assisted remote attackers to copy or rename arbitrary files when local users perform drag-and-drop operations from the untrusted application or applet window onto certain types of desktop applications.

    Published: 3 Oct 2007
    6.8
    Medium

    CVE-2007-4568

    Last Modified: 23 Apr 2026

    Integer overflow in the build_range function in X.Org X Font Server (xfs) before 1.0.5 allows context-dependent attackers to execute arbitrary code via (1) QueryXBitmaps and (2) QueryXExtents protocol requests with crafted size values, which triggers a heap-based buffer overflow.

    Published: 2 Oct 2007
    7.5
    High

    CVE-2007-4990

    Last Modified: 23 Apr 2026

    The swap_char2b function in X.Org X Font Server (xfs) before 1.0.5 allows context-dependent attackers to execute arbitrary code via (1) QueryXBitmaps and (2) QueryXExtents protocol requests with crafted size values that specify an arbitrary number of bytes to be swapped on the heap, which triggers heap corruption.

    Published: 2 Oct 2007
    7.1
    High

    CVE-2007-4997

    Last Modified: 23 Apr 2026

    Integer underflow in the ieee80211_rx function in net/ieee80211/ieee80211_rx.c in the Linux kernel 2.6.x before 2.6.23 allows remote attackers to cause a denial of service (crash) via a crafted SKB length value in a runt IEEE 802.11 frame when the IEEE80211_STYPE_QOS_DATA flag is set, aka an "off-by-two error."

    Published: 2 Oct 2007
    6.8
    Medium

    CVE-2007-5084

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Computer Associates (CA) BrightStor Hierarchical Storage Manager (HSM) before r11.6 allow remote attackers to execute arbitrary SQL commands via CsAgent service commands with opcodes (1) 0x07, (2) 0x08, (3) 0x09, (4) 0x1E, (5) 0x32, (6) 0x36, (7) 0x40, and possibly others.

    Published: 1 Oct 2007
    5
    Medium

    CVE-2007-5170

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the embedded service processor (SP) before 3.09 in Sun Fire X2100 M2 and X2200 M2 Embedded Lights Out Manager (ELOM) allows remote attackers to send arbitrary network traffic and use ELOM as a spam proxy.

    Published: 1 Oct 2007
    5
    Medium

    CVE-2007-5171

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Quicksilver Forums before 1.4.1 allows remote attackers to delete arbitrary PMs via unspecified vectors.

    Published: 1 Oct 2007
    5
    Medium

    CVE-2007-5172

    Last Modified: 23 Apr 2026

    Quicksilver Forums before 1.4.1 allows remote attackers to obtain sensitive information by causing unspecified connection errors, which reveals the database password in the resulting error message.

    Published: 1 Oct 2007
    10
    Critical

    CVE-2007-5003

    Last Modified: 23 Apr 2026

    Multiple stack-based buffer overflows in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allow remote attackers to execute arbitrary code via a long (1) username or (2) password to the rxrLogin command in rxRPC.dll, or a long (3) username argument to the GetUserInfo function.

    Published: 1 Oct 2007
    10
    Critical

    CVE-2007-5005

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in rxRPC.dll in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allows remote attackers to upload and overwrite arbitrary files via a ..\ (dot dot backslash) sequence in the destination filename argument to sub-function 8 in the rxrReceiveFileFromServer command.

    Published: 1 Oct 2007
    10
    Critical

    CVE-2007-5006

    Last Modified: 23 Apr 2026

    Multiple command handlers in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 do not verify if a peer is authenticated, which allows remote attackers to add and delete users, and start client restores.

    Published: 1 Oct 2007
    10
    Critical

    CVE-2007-5082

    Last Modified: 23 Apr 2026

    Multiple stack-based buffer overflows in Computer Associates (CA) BrightStor Hierarchical Storage Manager (HSM) before r11.6 allow remote attackers to execute arbitrary code via unspecified CsAgent service commands with certain opcodes, related to missing validation of a length parameter.

    Published: 1 Oct 2007
    10
    Critical

    CVE-2007-5083

    Last Modified: 23 Apr 2026

    Multiple integer overflows in Computer Associates (CA) BrightStor Hierarchical Storage Manager (HSM) before r11.6 allow remote attackers to execute arbitrary code via unspecified CsAgent service commands that trigger a heap-based buffer overflow.

    Published: 1 Oct 2007
    9.3
    Critical

    CVE-2007-5004

    Last Modified: 23 Apr 2026

    Integer overflow in CA (Computer Associates) BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.5 allows remote attackers to execute arbitrary code via a long username and a certain "useless" password.

    Published: 1 Oct 2007
    6.8
    Medium

    CVE-2007-5148

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in FrontAccounting (FA) 1.12 allow remote attackers to execute arbitrary PHP code via a URL in the path_to_root parameter to (1) access/logout.php or certain PHP scripts under (2) admin/, (3) dimensions/, (4) gl/, (5) inventory/, (6) manufacturing/, (7) purchasing/, (8) reporting/, (9) sales/, or (10) taxes/. NOTE: the config.php vector is already covered by CVE-2007-4279, and the login.php and language.php vectors are already covered by CVE-2007-5117. NOTE: this issue is disputed by CVE because path_to_root is defined before use in all of the other files reported in the original disclosure

    Published: 1 Oct 2007
    7.5
    High

    CVE-2007-5152

    Last Modified: 23 Apr 2026

    Sun Java System Access Manager 7.1, when installed in a Sun Java System Application Server 9.1 container, does not demand authentication after a container restart, which allows remote attackers to perform administrative tasks.

    Published: 1 Oct 2007
    6.8
    Medium

    CVE-2007-5153

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Sun Java System Access Manager 7.1, when installed in a Sun Java System Application Server 8.x container, allows remote attackers to execute arbitrary code via unspecified vectors.

    Published: 1 Oct 2007
    5.8
    Medium

    CVE-2007-5154

    Last Modified: 23 Apr 2026

    Session fixation vulnerability in Aipo and Aipo ASP 3.0.1.0 and earlier allows remote attackers to hijack web sessions via unspecified vectors.

    Published: 1 Oct 2007
    4.3
    Medium

    CVE-2007-5161

    Last Modified: 23 Apr 2026

    Cross-zone scripting vulnerability in the internal browser in i-Systems Feedreader 3.10 allows remote attackers to inject arbitrary web script or HTML via an item in a feed, as demonstrated by a WordPress blog update. NOTE: this was originally reported as XSS.

    Published: 1 Oct 2007
    6.8
    Medium

    CVE-2007-5163

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/functions/layout.php in Nexty 1.01.A Beta allows remote attackers to execute arbitrary PHP code via a URL in the rel parameter. NOTE: this issue is disputed by CVE because the applicable include is in a function that is not called on a direct request

    Published: 1 Oct 2007
    6.8
    Medium

    CVE-2007-5164

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in htmls/forum/includes/topic_review.php in UniversiBO 1.3.4 allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. NOTE: this issue is disputed by CVE because the applicable include is in a function that is not called on a direct request

    Published: 1 Oct 2007
    1.9
    Low

    CVE-2007-5143

    Last Modified: 23 Apr 2026

    F-Secure Anti-Virus for Windows Servers 7.0 64-bit edition allows local users to bypass virus scanning by using the system32 directory to store a crafted (1) archive or (2) packed executable. NOTE: in many environments, this does not cross privilege boundaries because any process able to write to system32 could also shut off F-Secure Anti-Virus.

    Published: 1 Oct 2007
    4.3
    Medium

    CVE-2007-5145

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in system DLL files in Microsoft Windows XP, as used by Microsoft Windows Explorer (explorer.exe) 6.00.2900.2180, Don Ho Notepad++, unspecified Adobe Macromedia applications, and other programs, allow user-assisted remote attackers to cause a denial of service (application crash) via long strings in the (1) author, (2) title, (3) subject, and (4) comment Properties fields of a file, possibly involving improper handling of extended file attributes by the (a) NtQueryInformationFile, (b) NtQueryDirectoryFile, (c) NtSetInformationFile, (d) FileAllInformation, (e) FileNameInformation, and other FILE_INFORMATION_CLASS functions in ntdll.dll and the (f) GetFileAttributesExW and (g) GetFileAttributesW functions in kernel32.dll, a related issue to CVE-2007-1347.

    Published: 1 Oct 2007
    7.5
    High

    CVE-2007-5156

    Last Modified: 23 Apr 2026

    Incomplete blacklist vulnerability in editor/filemanager/upload/php/upload.php in FCKeditor, as used in SiteX CMS 0.7.3.beta, La-Nai CMS, Syntax CMS, Cardinal Cms, and probably other products, allows remote attackers to upload and execute arbitrary PHP code via a file whose name contains ".php." and has an unknown extension, which is recognized as a .php file by the Apache HTTP server, a different vulnerability than CVE-2006-0658 and CVE-2006-2529.

    Published: 1 Oct 2007
    4.3
    Medium

    CVE-2007-5158

    Last Modified: 23 Apr 2026

    The focus handling for the onkeydown event in Microsoft Internet Explorer 6.0 allows remote attackers to change field focus and copy keystrokes via a certain use of a JavaScript htmlFor attribute, as demonstrated by changing focus from a textarea to a file upload field, a related issue to CVE-2007-3511.

    Published: 1 Oct 2007
    6.8
    Medium

    CVE-2007-5166

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in SiteSys 1.0a allow remote attackers to execute arbitrary PHP code via a URL in the doc_root parameter to (1) inc/pagehead.inc.php or (2) inc/pageinit.inc.php.

    Published: 1 Oct 2007
    4.3
    Medium

    CVE-2007-5144

    Last Modified: 23 Apr 2026

    Buffer overflow in the GDI engine in Windows Live Messenger, as used for Windows MSN Live 8.1, allows user-assisted remote attackers to cause a denial of service (application crash or system crash) and possibly execute arbitrary code by placing a malformed file in a new folder under the Sharing Folders path, and triggering a synchronize operation through the Windows MSN Live online service, possibly related to extended file attributes and possibly related to an incomplete fix for MS07-046, as demonstrated by a (1) .jpg, (2) .gif, (3) .wmf, (4) .doc, or (5) .ico file.

    Published: 1 Oct 2007
    6.8
    Medium

    CVE-2007-5146

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in dedi-group Der Dirigent 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the dedi_path parameter to (1) inc.generate_code.php, (2) fnc.type_forms.php, or (3) fnc.type.php in backend/inc/, or (4) frontend.php or (5) backend.php in projekt01/cms/inc/; or (6) the this_dir parameter to backend/inc/class.filemanager.php. NOTE: vectors 4 and 5 are disputed by CVE because PHP encounters a fatal function-call error on a direct request for the file, before reaching the include statement.

    Published: 1 Oct 2007
    6.8
    Medium

    CVE-2007-5147

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Puzzle Apps CMS 2.2.1 allow remote attackers to execute arbitrary PHP code via a URL in the MODULEDIR parameter to (1) core/modules/my/my.module.php or (2) core/modules/xml/xml.module.php; the COREROOT parameter to (3) config.loader.php, (4) platform.loader.php, (5) core.loader.php, (6) person.loader.php, or (7) module.loader.php in core/ or (8) install/steps/step_3.php; or the THISDIR parameter to (9) people.lib.php, (10) general.lib.php, (11) content.lib.php, or (12) templates.lib.php in core/modules/admin/libs/ or (13) core/modules/webstat/MEC/index.php.

    Published: 1 Oct 2007
    6.8
    Medium

    CVE-2007-5149

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in NewsCMS/news/newstopic_inc.php in North Country Public Radio Public Media Manager (PMM) 1.3 allows remote attackers to execute arbitrary PHP code via a URL in the indir parameter.

    Published: 1 Oct 2007
    7.5
    High

    CVE-2007-5150

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the is_god function in includes/nukesentinel.php in NukeSentinel 2.5.11 allows remote attackers to execute arbitrary SQL commands via base64-encoded data in an admin cookie, a different vector than CVE-2007-5125.

    Published: 1 Oct 2007
    7.5
    High

    CVE-2007-5151

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the abget_admin function in includes/nukesentinel.php in NukeSentinel 2.5.12 allows remote attackers to execute arbitrary SQL commands via base64-encoded data in an admin cookie.

    Published: 1 Oct 2007
    9.3
    Critical

    CVE-2007-5155

    Last Modified: 23 Apr 2026

    IceGUI.DLL in ICEOWS 4.20b invokes a function with incorrect arguments, which allows user-assisted remote attackers to execute arbitrary code via a long filename in the header of an ACE archive, which triggers a stack-based buffer overflow.

    Published: 1 Oct 2007
    4.6
    Medium

    CVE-2007-5159

    Last Modified: 23 Apr 2026

    The ntfs-3g package before 1.913-2.fc7 in Fedora 7, and an ntfs-3g package in Ubuntu 7.10/Gutsy, assign incorrect permissions (setuid root) to mount.ntfs-3g, which allows local users with fuse group membership to read from and write to arbitrary block devices, possibly involving a file descriptor leak.

    Published: 1 Oct 2007
    6.8
    Medium

    CVE-2007-5160

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Thierry Leriche Restaurant Management System (ReMaSys) 0.5 allow remote attackers to execute arbitrary PHP code via a URL in (1) the DIR_ROOT parameter to (a) global.php, or the (2) DIR_PAGE parameter to (b) template/fr/page.php or (c) page/fr/boxConnection.php.

    Published: 1 Oct 2007
    6.8
    Medium

    CVE-2007-5165

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in init.php in Jens Tkotz myIpacNG-stats (MINGS) 0.05 allows remote attackers to execute arbitrary PHP code via a URL in the MINGS_BASE parameter. NOTE: this issue is disputed by CVE because MINGS_BASE is defined before use

    Published: 1 Oct 2007
    6.8
    Medium

    CVE-2007-5167

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in .systeme/fonctions.php in phpLister 0.5-pre2 allows remote attackers to execute arbitrary PHP code via a URL in the nom_rep_systeme parameter.

    Published: 1 Oct 2007
    6.8
    Medium

    CVE-2007-5157

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in phfito-post.php in Alex Kocharin PHP Fidonet Tosser (PhFiTo) 1.3.0 in phpFidoNode allows remote attackers to execute arbitrary PHP code via a URL in the SRC_PATH parameter to phfito-post.

    Published: 1 Oct 2007
    6.8
    Medium

    CVE-2007-5168

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in ClanLite 1.23.01.2005 allow remote attackers to execute arbitrary PHP code via a URL in the root_path parameter to (1) modules/serveur_jeux.php or (2) conf/conf-php.php. NOTE: vector 1 is disputed by CVE because the require_once is only reached when a certain constant has already been defined.

    Published: 1 Oct 2007
    4.3
    Medium

    CVE-2007-5136

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in DFD Cart 1.1.4 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 28 Sept 2007
    6.8
    Medium

    CVE-2007-5139

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in admin/include/header.php in chupix 0.2.3, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the repertoire parameter.

    Published: 28 Sept 2007
    4.3
    Medium

    CVE-2007-5142

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in buscar.asp in Solidweb Novus 1.0 allows remote attackers to inject arbitrary web script or HTML via the p parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 28 Sept 2007
    6.8
    Medium

    CVE-2007-5141

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in search.php in SiteX CMS 0.7.3 Beta allows remote attackers to execute arbitrary SQL commands via the search parameter.

    Published: 28 Sept 2007
    6.8
    Medium

    CVE-2007-5140

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/archive/archive_topic.php in IntegraMOD Nederland 1.4.2 allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.

    Published: 28 Sept 2007
    6.8
    Medium

    CVE-2007-5138

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in forum/forum.php in lustig.cms BETA 2.5 allows remote attackers to execute arbitrary PHP code via a URL in the view parameter.

    Published: 28 Sept 2007
    4.9
    Medium

    CVE-2009-1336

    Last Modified: 23 Apr 2026

    fs/nfs/client.c in the Linux kernel before 2.6.23 does not properly initialize a certain structure member that stores the maximum NFS filename length, which allows local users to cause a denial of service (OOPS) via a long filename, related to the encode_lookup function.

    Published: 28 Sept 2007
    10
    Critical

    CVE-2007-4880

    Last Modified: 23 Apr 2026

    Buffer overflow in the Client Acceptor Daemon (CAD), dsmcad.exe, in certain IBM Tivoli Storage Manager (TSM) clients 5.1 before 5.1.8.1, 5.2 before 5.2.5.2, 5.3 before 5.3.5.3, and 5.4 before 5.4.1.2 allows remote attackers to execute arbitrary code via crafted HTTP headers, aka IC52905.

    Published: 28 Sept 2007
    9.8
    Critical

    CVE-2007-5199

    Last Modified: 20 Apr 2025

    A single byte overflow in catalogue.c in X.Org libXfont 1.3.1 allows remote attackers to have unspecified impact.

    Published: 28 Sept 2007
    6.8
    Medium

    CVE-2007-3759

    Last Modified: 23 Apr 2026

    Safari in Apple iPhone 1.1.1, when requested to disable Javascript, does not disable it until Safari is restarted, which might leave Safari open to attacks that the user does not expect.

    Published: 27 Sept 2007