CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2007-5098

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in DFD Cart 1.1.4 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the set_depth parameter to (1) app.lib/product.control/core.php/product.control.config.php, or (2) customer.browse.list.php or (3) customer.browse.search.php in app.lib/product.control/core.php/customer.area/.

    Published: 26 Sept 2007
    7.5
    High

    CVE-2007-5099

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in show.php in David Watters Helplink 0.1.0 allows remote attackers to execute arbitrary PHP code via a URL in the file parameter.

    Published: 26 Sept 2007
    6.8
    Medium

    CVE-2007-5100

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in phpBB Plus 1.53, and 1.53a before 20070922, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter to (1) language/lang_german/lang_admin_album.php, (2) language/lang_english/lang_main_album.php, and (3) language/lang_english/lang_admin_album.php, different vectors than CVE-2007-5009.

    Published: 26 Sept 2007
    4.3
    Medium

    CVE-2007-5106

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in wp-register.php in WordPress 2.0 allows remote attackers to inject arbitrary web script or HTML via the user_login parameter.

    Published: 26 Sept 2007
    4.3
    Medium

    CVE-2007-5088

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in search/cust_bill_event.cgi in Freeside 1.7.2 allows remote attackers to inject arbitrary web script or HTML via the failed parameter.

    Published: 26 Sept 2007
    6.8
    Medium

    CVE-2007-5092

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in the Dance Music module for phpNuke, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in an ACCEPT_FILE array parameter to modules.php.

    Published: 26 Sept 2007
    4.3
    Medium

    CVE-2007-4874

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in SimpNews 2.41.03 allow remote attackers to inject arbitrary web script or HTML via the (1) l_username parameter to admin/layout2b.php, and the (2) backurl parameter to comment.php.

    Published: 26 Sept 2007
    7.5
    High

    CVE-2007-5090

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in IBM Rational ClearQuest (CQ), when a Microsoft SQL Server or an IBM DB2 database is used, allows attackers to corrupt data via unspecified vectors.

    Published: 26 Sept 2007
    4.3
    Medium

    CVE-2007-5091

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in eGroupWare 1.4.001 allow remote attackers to inject arbitrary web script or HTML via the cat_data[color] parameter to (1) preferences/inc/class.uicategories.inc.php and (2) admin/inc/class.uicategories.inc.php.

    Published: 26 Sept 2007
    7.5
    High

    CVE-2007-5089

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in php-inc/log.inc.php in sk.log 0.5.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the SKIN_URL parameter.

    Published: 26 Sept 2007
    5
    Medium

    CVE-2007-5085

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the management EJB (MEJB) in Apache Geronimo before 2.0.2 allows remote attackers to bypass authentication and obtain "access to Geronimo internals" via unspecified vectors.

    Published: 26 Sept 2007
    4.9
    Medium

    CVE-2007-5087

    Last Modified: 23 Apr 2026

    The ATM module in the Linux kernel before 2.4.35.3, when CLIP support is enabled, allows local users to cause a denial of service (kernel panic) by reading /proc/net/atm/arp before the CLIP module has been loaded.

    Published: 26 Sept 2007
    2.1
    Low

    CVE-2007-5086

    Last Modified: 23 Apr 2026

    Kaspersky Anti-Virus (KAV) and Internet Security 7.0 build 125 do not properly validate certain parameters to System Service Descriptor Table (SSDT) and Shadow SSDT function handlers, which allows local users to cause a denial of service (crash) via the (1) NtUserSendInput, (2) LoadLibraryA, (3) NtOpenProcess, (4) NtOpenThread, (5) NtTerminateProcess, (6) NtUserFindWindowEx, and (7) NtUserBuildHwndList kernel SSDT hooks in kylif.sys; the (8) NtDuplicateObject (DuplicateHandle) kernel SSDT hook; and possibly other kernel SSDT hooks. NOTE: the NtCreateSection vector is covered by CVE-2007-5043.1. NOTE: the vendor disputes that the DuplicateHandle vector is a vulnerability in their code, stating that "it is not an error in our code, but an obscure method for manipulating standard Windows routines to circumvent our self-defense mechanisms."

    Published: 26 Sept 2007
    4.3
    Medium

    CVE-2007-6110

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in htsearch in htdig 3.2.0b6 allows remote attackers to inject arbitrary web script or HTML via the sort parameter.

    Published: 25 Sept 2007
    2.1
    Low

    CVE-2007-4571

    Last Modified: 23 Apr 2026

    The snd_mem_proc_read function in sound/core/memalloc.c in the Advanced Linux Sound Architecture (ALSA) in the Linux kernel before 2.6.22.8 does not return the correct write size, which allows local users to obtain sensitive information (kernel memory contents) via a small count argument, as demonstrated by multiple reads of /proc/driver/snd-page-alloc.

    Published: 25 Sept 2007
    7.5
    High

    CVE-2007-5067

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in iMatix Xitami Web Server 2.5c2 allow remote attackers to execute arbitrary code via a long If-Modified-Since header to (1) xigui32.exe or (2) xitami.exe.

    Published: 24 Sept 2007
    7.5
    High

    CVE-2007-5069

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in data/compatible.php in the Nuke Mobile Entertainment 1 addon for PHP-Nuke allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the module_name parameter.

    Published: 24 Sept 2007
    7.5
    High

    CVE-2007-5071

    Last Modified: 23 Apr 2026

    Incomplete blacklist vulnerability in upload_img_cgi.php in Simple PHP Blog before 0.5.1 allows remote attackers to upload dangerous files and execute arbitrary code, as demonstrated by a filename ending in .php. or a .htaccess file, a different vector than CVE-2005-2733. NOTE: the vulnerability was also present in a 0.5.1 download available in the early morning of 20070923. NOTE: the original 20070920 disclosure provided an incorrect filename, img_upload_cgi.php.

    Published: 24 Sept 2007
    4.3
    Medium

    CVE-2007-5072

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Simple PHP Blog (SPHPBlog) before 0.5.1, when register_globals is enabled, allow remote attackers to inject arbitrary web script or HTML via certain user_colors array parameters to certain user_style.php files under themes/, as demonstrated by the user_colors[bg_color] parameter.

    Published: 24 Sept 2007
    9
    Critical

    CVE-2007-5066

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Webmin before 1.370 on Windows allows remote authenticated users to execute arbitrary commands via a crafted URL.

    Published: 24 Sept 2007
    10
    Critical

    CVE-2007-5070

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the EasyMailMessagePrinter ActiveX control in emprint.DLL 6.0.1.0 in the Quiksoft EasyMail MessagePrinter Object allows remote attackers to execute arbitrary code via a long string in the first argument to the SetFont method.

    Published: 24 Sept 2007
    7.5
    High

    CVE-2007-5068

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in phpFullAnnu (PFA) 6.0 allows remote attackers to execute arbitrary SQL commands via the mod parameter.

    Published: 24 Sept 2007
    7.5
    High

    CVE-2007-5054

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in iziContents 1 RC6 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the gsLanguage parameter to (1) search/search.php, (2) poll/inlinepoll.php, (3) poll/showpoll.php, (4) links/showlinks.php, or (5) links/submit_links.php in modules/.

    Published: 24 Sept 2007
    10
    Critical

    CVE-2007-5057

    Last Modified: 23 Apr 2026

    NetSupport Manager Client before 10.20.0004 allows remote attackers to bypass the (1) basic and (2) authentication schemes by spoofing the NetSupport Manager.

    Published: 24 Sept 2007
    6.8
    Medium

    CVE-2007-5056

    Last Modified: 23 Apr 2026

    Eval injection vulnerability in adodb-perf-module.inc.php in ADOdb Lite 1.42 and earlier, as used in products including CMS Made Simple, SAPID CMF, Journalness, PacerCMS, and Open-Realty, allows remote attackers to execute arbitrary code via PHP sequences in the last_module parameter.

    Published: 24 Sept 2007
    7.5
    High

    CVE-2007-5061

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in mods/banners/navlist.php in Clansphere 2007.4 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter to index.php in a banners action.

    Published: 24 Sept 2007
    7.5
    High

    CVE-2007-5062

    Last Modified: 23 Apr 2026

    account.php in Adam Scheinberg Flip 3.0 and earlier allows remote attackers to create administrative accounts via the un parameter in a register action.

    Published: 24 Sept 2007
    4.3
    Medium

    CVE-2007-5059

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in GreenSQL allow remote attackers to inject arbitrary web script or HTML via several vectors, as demonstrated by the (1) uname and (2) pass parameters in a login form, and (3) an unspecified "url value," leading to storage of XSS sequences in the database and display of these sequences in the alert section of the admin panel.

    Published: 24 Sept 2007
    7.5
    High

    CVE-2007-5065

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in admin.slideshow1.php in the Flash Slide Show (com_slideshow) component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.

    Published: 24 Sept 2007
    7.5
    High

    CVE-2007-5053

    Last Modified: 23 Apr 2026

    Multiple incomplete blacklist vulnerabilities in iziContents 1 RC6 and earlier allow remote attackers to execute arbitrary PHP code via a URL in (1) the admin_home parameter to modules/poll/poll_summary.php or (2) the rootdp parameter to include/db.php; or a URL in the language_home parameter to (3) search/search.php, (4) poll/inlinepoll.php, (5) poll/showpoll.php, (6) links/showlinks.php, or (7) links/submit_links.php in modules/; related to missing checks in (a) modules/moduleSec.php and (b) include/includeSec.php for inclusion of certain URLs, as demonstrated by an ftps:// URL.

    Published: 24 Sept 2007
    4.3
    Medium

    CVE-2007-5058

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the Web administration interface in Barracuda Spam Firewall before firmware 3.5.10.016 allows remote attackers to inject arbitrary web script or HTML via the username field in a login attempt, which is not properly handled when the Monitor Web Syslog screen is open.

    Published: 24 Sept 2007
    4.3
    Medium

    CVE-2007-5060

    Last Modified: 23 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in the cpass functionality in an admin action in index.php in XCMS allows remote attackers to change arbitrary passwords via certain password_ and rpassword_ parameters, possibly related to timestamp values.

    Published: 24 Sept 2007
    6.8
    Medium

    CVE-2007-5064

    Last Modified: 23 Apr 2026

    Buffer overflow in a certain ActiveX control in Xunlei Web Thunder 5.6.9.344, possibly the DapPlayer ActiveX control in DapPlayer_Now.dll, allows remote attackers to execute arbitrary code via a long first argument to the DownURL2 method. NOTE: some of these details are obtained from third party information.

    Published: 24 Sept 2007
    7.5
    High

    CVE-2007-5055

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in iziContents 1 RC6 and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) the admin_home parameter to modules/poll/poll_summary.php or (2) the rootdp parameter to include/db.php.

    Published: 24 Sept 2007
    5
    Medium

    CVE-2007-5063

    Last Modified: 23 Apr 2026

    Adam Scheinberg Flip 3.0 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a file containing login credentials via a direct request for var/users.txt.

    Published: 24 Sept 2007
    4.4
    Medium

    CVE-2007-3916

    Last Modified: 23 Apr 2026

    The main function in skkdic-expr.c in SKK Tools 1.2 allows local users to overwrite or delete arbitrary files via a symlink attack on a skkdic$PID temporary file.

    Published: 24 Sept 2007
    6.8
    Medium

    CVE-2007-5037

    Last Modified: 23 Apr 2026

    Buffer overflow in the inotifytools_snprintf function in src/inotifytools.c in the inotify-tools library before 3.11 allows context-dependent attackers to execute arbitrary code via a long filename.

    Published: 24 Sept 2007
    7.5
    High

    CVE-2007-5038

    Last Modified: 23 Apr 2026

    The offer_account_by_email function in User.pm in the WebService for Bugzilla before 3.0.2, and 3.1.x before 3.1.2, does not check the value of the createemailregexp parameter, which allows remote attackers to bypass intended restrictions on account creation.

    Published: 24 Sept 2007
    2.1
    Low

    CVE-2007-5039

    Last Modified: 23 Apr 2026

    Ghost Security Suite beta 1.110 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via the (1) NtCreateKey, (2) NtDeleteValueKey, (3) NtQueryValueKey, (4) NtSetSystemInformation, and (5) NtSetValueKey kernel SSDT hooks.

    Published: 24 Sept 2007
    4.6
    Medium

    CVE-2007-5041

    Last Modified: 23 Apr 2026

    G DATA InternetSecurity 2007 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via the (1) NtCreateKey and (2) NtOpenProcess kernel SSDT hooks.

    Published: 24 Sept 2007
    4.3
    Medium

    CVE-2007-5046

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the Webmail interface for IceWarp Merak Mail Server before 9.0.0 allows remote attackers to inject arbitrary JavaScript via a javascript: URI in an attribute of an element in an email message body, as demonstrated by the onload attribute in a BODY element.

    Published: 24 Sept 2007
    7.5
    High

    CVE-2007-5050

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in Neuron News 1.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the q parameter.

    Published: 24 Sept 2007
    7.5
    High

    CVE-2007-5035

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in html/modules/extranet_profile/main.php in openEngine 1.9 beta1 allows remote attackers to execute arbitrary PHP code via a URL in the this_module_path parameter. NOTE: this issue is disputed by CVE because PHP encounters a fatal function-call error on a direct request for the file, before reaching the include statement

    Published: 24 Sept 2007
    7.2
    High

    CVE-2007-5047

    Last Modified: 23 Apr 2026

    Norton Internet Security 2008 15.0.0.60 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via the NtOpenSection kernel SSDT hook. NOTE: the NtCreateMutant and NtOpenEvent function hooks are already covered by CVE-2007-1793.

    Published: 24 Sept 2007
    4.3
    Medium

    CVE-2007-5052

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in Vigile CMS 1.8 allow remote attackers to inject arbitrary web script or HTML via a request to the wiki module with (1) the title parameter or (2) a "title=" sequence in the PATH_INFO, or a request to the download module with (3) the cat parameter or (4) a "cat=" sequence in the PATH_INFO.

    Published: 24 Sept 2007
    5
    Medium

    CVE-2007-5036

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in the AirDefense Airsensor M520 with firmware 4.3.1.1 and 4.4.1.4 allow remote authenticated users to cause a denial of service (HTTPS service outage) via a crafted query string in an HTTPS request to (1) adLog.cgi, (2) post.cgi, or (3) ad.cgi, related to the "files filter."

    Published: 24 Sept 2007
    2.1
    Low

    CVE-2007-5040

    Last Modified: 23 Apr 2026

    Ghost Security Suite alpha 1.200 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via the (1) NtCreateKey, (2) NtCreateThread, (3) NtDeleteValueKey, (4) NtQueryValueKey, (5) NtSetSystemInformation, and (6) NtSetValueKey kernel SSDT hooks.

    Published: 24 Sept 2007
    4.4
    Medium

    CVE-2007-5043

    Last Modified: 23 Apr 2026

    Kaspersky Internet Security 7.0.0.125 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to (1) cause a denial of service (crash) and possibly gain privileges via the NtCreateSection kernel SSDT hook or (2) cause a denial of service (avp.exe service outage) via the NtLoadDriver kernel SSDT hook. NOTE: this issue may partially overlap CVE-2006-3074.

    Published: 24 Sept 2007
    6.9
    Medium

    CVE-2007-5044

    Last Modified: 23 Apr 2026

    ZoneAlarm Pro 7.0.362.000 does not properly validate certain parameters to System Service Descriptor Table (SSDT) function handlers, which allows local users to cause a denial of service (crash) and possibly gain privileges via the (1) NtCreatePort and (2) NtDeleteFile kernel SSDT hooks, a partial regression of CVE-2007-2083.

    Published: 24 Sept 2007
    9.3
    Critical

    CVE-2007-5045

    Last Modified: 23 Apr 2026

    Argument injection vulnerability in Apple QuickTime 7.1.5 and earlier, when running on systems with Mozilla Firefox before 2.0.0.7 installed, allows remote attackers to execute arbitrary commands via a QuickTime Media Link (QTL) file with an embed XML element and a qtnext parameter containing the Firefox "-chrome" argument. NOTE: this is a related issue to CVE-2006-4965 and the result of an incomplete fix for CVE-2007-3670.

    Published: 24 Sept 2007