CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2007-4824

    Last Modified: 23 Apr 2026

    Multiple cross-application scripting (XAS) vulnerabilities in Google Picasa have unspecified attack vectors and impact. NOTE: this information is based upon a vague pre-advisory.

    Published: 11 Sept 2007
    6.8
    Medium

    CVE-2007-4815

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in WebED in Markus Iser ED Engine 0.8999 alpha allow remote attackers to execute arbitrary PHP code via a URL in the Codebase parameter to (1) channeledit.php, (2) post.php, (3) view.php, or (4) viewitem.php in source/mod/rss/.

    Published: 11 Sept 2007
    7.5
    High

    CVE-2007-4823

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in Google Picasa have unspecified attack vectors and impact. NOTE: this information is based upon a vague pre-advisory.

    Published: 11 Sept 2007
    7.5
    High

    CVE-2007-4814

    Last Modified: 23 Apr 2026

    Buffer overflow in the SQLServer ActiveX control in the Distributed Management Objects OLE DLL (sqldmo.dll) 2000.085.2004.00 in Microsoft SQL Server Enterprise Manager 8.05.2004 allows remote attackers to execute arbitrary code via a long second argument to the Start method.

    Published: 11 Sept 2007
    4.3
    Medium

    CVE-2007-4822

    Last Modified: 23 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in the device management interface in Buffalo AirStation WHR-G54S 1.20 allows remote attackers to make configuration changes as an administrator via HTTP requests to certain HTML pages in the res parameter with an inp req parameter to cgi-bin/cgi, as demonstrated by accessing (1) ap.html and (2) filter_ip.html.

    Published: 11 Sept 2007
    6.8
    Medium

    CVE-2007-4803

    Last Modified: 23 Apr 2026

    Buffer overflow in AtomixMP3 2.3 allows user-assisted remote attackers to execute arbitrary code via long strings in file and title fields in a .pls file, as demonstrated by the (1) File1 and (2) Title1 fields, different vectors than CVE-2006-6287 and CVE-2007-2487.

    Published: 11 Sept 2007
    7.5
    High

    CVE-2007-4805

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in getgalldata.php in fuzzylime (cms) 3.0 and earlier allows remote attackers to include arbitrary local files via a .. (dot dot) in the p parameter.

    Published: 11 Sept 2007
    7.5
    High

    CVE-2007-4810

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Netjuke 1.0-rc2 allow remote attackers to execute arbitrary SQL commands via (1) the ge_id parameter in a list.artists action to explore.php or (2) the id parameter in a show.tracks action to xml.php.

    Published: 11 Sept 2007
    4.3
    Medium

    CVE-2007-4811

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Netjuke 1.0-rc2 allow remote attackers to inject arbitrary web script or HTML via (1) the val parameter to alphabet.php in an alpha.albums action, or the PATH_INFO to (2) random.php or (3) admin/hidden.php.

    Published: 11 Sept 2007
    4.3
    Medium

    CVE-2007-4813

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Domino Blogsphere 3.01 Beta 7 allows remote attackers to inject arbitrary web script or HTML via the name field. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 11 Sept 2007
    7.5
    High

    CVE-2007-4809

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Online Fantasy Football League (OFFL) 0.2.6 allow remote attackers to execute arbitrary PHP code via a URL in the DOC_ROOT parameter to (1) lib/functions.php or (2) lib/header.php.

    Published: 11 Sept 2007
    7.5
    High

    CVE-2007-4807

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Focus/SIS 2.2 allow remote attackers to execute arbitrary PHP code via a URL in the staticpath parameter to (1) modules/Discipline/CategoryBreakdownTime.php or (2) modules/Discipline/StudentFieldBreakdown.php.

    Published: 11 Sept 2007
    7.5
    High

    CVE-2007-4808

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in TLM CMS 3.2 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to news.php in a lirenews action, (2) the idnews parameter to goodies.php in a lire action, (3) the id parameter to file.php in a voir action, (4) the ID parameter to affichage.php, (5) the id_sal parameter to mod_forum/afficher.php, or (6) the id_sujet parameter to mod_forum/messages.php. NOTE: it was later reported that goodies.php and affichage.php scripts are reachable through index.php, and 1.1 is also affected. NOTE: it was later reported that the goodies.php vector also affects 3.1.

    Published: 11 Sept 2007
    5
    Medium

    CVE-2007-4812

    Last Modified: 23 Apr 2026

    Buffer overflow in Apple Safari 3.0.3 522.15.5, and other versions before Beta Update 3.0.4, allows remote attackers to cause a denial of service (crash) and possibly have other unspecified impact by setting document.location.hash to a long string. NOTE: the crash might actually occur in the alert method.

    Published: 11 Sept 2007
    6.8
    Medium

    CVE-2007-4802

    Last Modified: 23 Apr 2026

    Multiple heap-based buffer overflows in GlobalLink 2.7.0.8 allow remote attackers to execute arbitrary code via (1) a long eighth argument to the SetInfo method in a certain ActiveX control in glItemCom.dll or (2) a long second argument to the SetClientInfo method in a certain ActiveX control in glitemflat.dll.

    Published: 11 Sept 2007
    7.5
    High

    CVE-2007-4804

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in AuraCMS 1.5rc allow remote attackers to execute arbitrary SQL commands via the id parameter in (1) hal.php, (2) cetak.php, (3) lihat.php, (4) pesan.php, and (5) teman.php, different vectors than CVE-2007-4171. NOTE: the scripts may be accessed through requests to the product's top-level default URI, using the pilih parameter, in some circumstances.

    Published: 11 Sept 2007
    7.5
    High

    CVE-2007-4806

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in modules/Discipline/CategoryBreakdownTime.php in Focus/SIS 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the FocusPath parameter.

    Published: 11 Sept 2007
    4.3
    Medium

    CVE-2007-5268

    Last Modified: 23 Apr 2026

    pngrtran.c in libpng before 1.0.29 and 1.2.x before 1.2.21 use (1) logical instead of bitwise operations and (2) incorrect comparisons, which might allow remote attackers to cause a denial of service (crash) via a crafted PNG image.

    Published: 11 Sept 2007
    4.3
    Medium

    CVE-2007-5266

    Last Modified: 23 Apr 2026

    Off-by-one error in ICC profile chunk handling in the png_set_iCCP function in pngset.c in libpng before 1.0.29 beta1 and 1.2.x before 1.2.21 beta1 allows remote attackers to cause a denial of service (crash) via a crafted PNG image that prevents a name field from being NULL terminated.

    Published: 11 Sept 2007
    4.9
    Medium

    CVE-2010-2070

    Last Modified: 11 Apr 2025

    arch/ia64/xen/faults.c in Xen 3.4 and 4.0 in Linux kernel 2.6.18, and possibly other kernel versions, when running on IA-64 architectures, allows local users to cause a denial of service and "turn on BE by modifying the user mask of the PSR," as demonstrated via exploitation of CVE-2006-0742.

    Published: 11 Sept 2007
    5
    Medium

    CVE-2007-5269

    Last Modified: 23 Apr 2026

    Certain chunk handlers in libpng before 1.0.29 and 1.2.x before 1.2.21 allow remote attackers to cause a denial of service (crash) via crafted (1) pCAL (png_handle_pCAL), (2) sCAL (png_handle_sCAL), (3) tEXt (png_push_read_tEXt), (4) iTXt (png_handle_iTXt), and (5) ztXT (png_handle_ztXt) chunking in PNG images, which trigger out-of-bounds read operations.

    Published: 11 Sept 2007
    6.9
    Medium

    CVE-2007-4138

    Last Modified: 23 Apr 2026

    The Winbind nss_info extension (nsswitch/idmap_ad.c) in idmap_ad.so in Samba 3.0.25 through 3.0.25c, when the "winbind nss info" option is set to rfc2307 or sfu, grants all local users the privileges of gid 0 when the (1) RFC2307 or (2) Services for UNIX (SFU) primary group attribute is not defined.

    Published: 11 Sept 2007
    4.3
    Medium

    CVE-2007-4779

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, probably related to the archive section.

    Published: 10 Sept 2007
    5
    Medium

    CVE-2007-4783

    Last Modified: 23 Apr 2026

    The iconv_substr function in PHP 5.2.4 and earlier allows context-dependent attackers to cause (1) a denial of service (application crash) via a long string in the charset parameter, probably also requiring a long string in the str parameter; or (2) a denial of service (temporary application hang) via a long string in the str parameter. NOTE: this might not be a vulnerability in most web server environments that support multiple threads, unless these issues can be demonstrated for code execution.

    Published: 10 Sept 2007
    6.8
    Medium

    CVE-2007-4785

    Last Modified: 23 Apr 2026

    Sony Micro Vault Fingerprint Access Software, as distributed with Sony Micro Vault USM-F USB flash drives, installs a driver that hides a directory under %WINDIR%, which might allow remote attackers to bypass malware detection by placing files in this directory.

    Published: 10 Sept 2007
    7.8
    High

    CVE-2007-4789

    Last Modified: 23 Apr 2026

    Cisco Content Switching Modules (CSM) 4.2 before 4.2.7, and Cisco Content Switching Module with SSL (CSM-S) 2.1 before 2.1.6, when service termination is enabled, allow remote attackers to cause a denial of service (reboot) via unspecified vectors related to high network utilization, aka CSCsh57876.

    Published: 10 Sept 2007
    7.2
    High

    CVE-2007-4791

    Last Modified: 23 Apr 2026

    Buffer overflow in the swcons command in bos.rte.console in IBM AIX 5.2 and 5.3 allows local users to gain privileges via unspecified vectors, a different vulnerability than CVE-2005-3504 and CVE-2007-0978.

    Published: 10 Sept 2007
    7.2
    High

    CVE-2007-4792

    Last Modified: 23 Apr 2026

    Buffer overflow in ibstat in devices.common.IBM.ib.rte in IBM AIX 5.3 allows local users to gain privileges via unspecified vectors.

    Published: 10 Sept 2007
    7.2
    High

    CVE-2007-4795

    Last Modified: 23 Apr 2026

    Buffer overflow in mkpath in bos.rte.methods in IBM AIX 5.2 and 5.3 allows local users to gain privileges via a long ODM name.

    Published: 10 Sept 2007
    4.9
    Medium

    CVE-2007-4799

    Last Modified: 23 Apr 2026

    The perfstat kernel extension in bos.perf.perfstat in AIX 5.3 does not verify privileges when processing a SET call, which allows local users to cause a denial of service (system hang or crash) via unspecified SET operations.

    Published: 10 Sept 2007
    7.2
    High

    CVE-2007-4797

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in unspecified svprint (System V print) commands in bos.svprint.rte in IBM AIX 5.2 and 5.3 allow local users to gain privileges via unspecified vectors.

    Published: 10 Sept 2007
    9.3
    Critical

    CVE-2007-4776

    Last Modified: 23 Apr 2026

    Buffer overflow in Microsoft Visual Basic 6.0 and Enterprise Edition 6.0 SP6 allows user-assisted remote attackers to execute arbitrary code via a Visual Basic project (vbp) file containing a long Reference line, related to VBP_Open and OLE. NOTE: there are limited usage scenarios under which this would be a vulnerability.

    Published: 10 Sept 2007
    5
    Medium

    CVE-2007-4787

    Last Modified: 23 Apr 2026

    The virus detection engine in Sophos Anti-Virus before 2.49.0 does not properly process malformed (1) CAB, (2) LZH, and (3) RAR files with modified headers, which might allow remote attackers to bypass malware detection.

    Published: 10 Sept 2007
    7.2
    High

    CVE-2007-4796

    Last Modified: 23 Apr 2026

    Buffer overflow in uucp in bos.net.uucp in IBM AIX 5.2 and 5.3 allows local users to gain privileges via unspecified vectors.

    Published: 10 Sept 2007
    7.2
    High

    CVE-2007-4793

    Last Modified: 23 Apr 2026

    Buffer overflow in xlplm in plm.server.rte in IBM AIX 5.2 and 5.3 allows local users to gain privileges via unspecified vectors.

    Published: 10 Sept 2007
    7.2
    High

    CVE-2007-4794

    Last Modified: 23 Apr 2026

    Buffer overflow in fcstat in devices.common.IBM.fc.rte in IBM AIX 5.2 and 5.3 allows local users to gain privileges via a long input parameter.

    Published: 10 Sept 2007
    7.5
    High

    CVE-2007-4777

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to execute arbitrary SQL commands via unspecified vectors, probably related to the archive section. NOTE: this may be the same as CVE-2007-4778.

    Published: 10 Sept 2007
    7.5
    High

    CVE-2007-4778

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in the content component (com_content) in Joomla! 1.5 Beta1, Beta2, and RC1 allow remote attackers to execute arbitrary SQL commands via the filter parameter in an archive action to (1) archive.php, (2) category.php, or (3) section.php in models/. NOTE: this may be the same as CVE-2007-4777.

    Published: 10 Sept 2007
    6.8
    Medium

    CVE-2007-4780

    Last Modified: 23 Apr 2026

    Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to obtain sensitive information (the full path) via unspecified vectors, probably involving direct requests to certain PHP scripts in tmpl/ directories.

    Published: 10 Sept 2007
    6.6
    Medium

    CVE-2007-4781

    Last Modified: 23 Apr 2026

    administrator/index.php in the installer component (com_installer) in Joomla! 1.5 Beta1, Beta2, and RC1 allows remote authenticated administrators to upload arbitrary files to tmp/ via the "Upload Package File" functionality, which is accessible when com_installer is the value of the option parameter.

    Published: 10 Sept 2007
    5.3
    Medium

    CVE-2007-4786

    Last Modified: 23 Apr 2026

    Cisco Adaptive Security Appliance (ASA) running PIX 7.0 before 7.0.7.1, 7.1 before 7.1.2.61, 7.2 before 7.2.2.34, and 8.0 before 8.0.2.11, when AAA is enabled, composes %ASA-5-111008 messages from the "test aaa" command with cleartext passwords and sends them over the network to a remote syslog server or places them in a local logging buffer, which allows context-dependent attackers to obtain sensitive information.

    Published: 10 Sept 2007
    7.8
    High

    CVE-2007-4788

    Last Modified: 23 Apr 2026

    Cisco Content Switching Modules (CSM) 4.2 before 4.2.3a, and Cisco Content Switching Module with SSL (CSM-S) 2.1 before 2.1.2a, allow remote attackers to cause a denial of service (CPU consumption or reboot) via sets of out-of-order TCP packets with unspecified characteristics, aka CSCsd27478.

    Published: 10 Sept 2007
    7.5
    High

    CVE-2007-4790

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in certain ActiveX controls in (1) FPOLE.OCX 6.0.8450.0 and (2) Foxtlib.ocx, as used in the Microsoft Visual FoxPro 6.0 fpole 1.0 Type Library; and Internet Explorer 5.01, 6 SP1 and SP2, and 7; allows remote attackers to execute arbitrary code via a long first argument to the FoxDoCmd function.

    Published: 10 Sept 2007
    6.6
    Medium

    CVE-2007-4798

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in invscout in Inventory Scout in invscout.rte in IBM AIX 5.2 and 5.3 allows local users to delete system files that have names matching the final substring of a hostname alias, as demonstrated by hostnames ending in "unix".

    Published: 10 Sept 2007
    7.2
    High

    CVE-2007-3912

    Last Modified: 23 Apr 2026

    checkrestart in debian-goodies before 0.34 allows local users to gain privileges via shell metacharacters in the name of the executable file for a running process.

    Published: 10 Sept 2007
    9.3
    Critical

    CVE-2007-4470

    Last Modified: 23 Apr 2026

    Multiple stack-based buffer overflows in the Earth Resource Mapping NCSView ActiveX control before 3.4.0.242 in NCSView.dll, as distributed in ER Mapper ECW JPEG 2000 Plug-in before 8.1, allow remote attackers to execute arbitrary code via unspecified vectors.

    Published: 10 Sept 2007
    4.3
    Medium

    CVE-2007-4512

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Sophos Anti-Virus for Windows 6.x before 6.5.8 and 7.x before 7.0.1 allows remote attackers to inject arbitrary web script or HTML via an archive with a file that matches a virus signature and has a crafted filename that is not properly handled by the print function in SavMain.exe.

    Published: 10 Sept 2007
    4.3
    Medium

    CVE-2007-4730

    Last Modified: 23 Apr 2026

    Buffer overflow in the compNewPixmap function in compalloc.c in the Composite extension for the X.org X11 server before 1.4 allows local users to execute arbitrary code by copying data from a large pixel depth pixmap into a smaller pixel depth pixmap.

    Published: 9 Sept 2007
    7.5
    High

    CVE-2007-4761

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in upload.php in Barbo91 1.1 allows remote attackers to upload and execute arbitrary code via unspecified vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 8 Sept 2007
    7.5
    High

    CVE-2007-4757

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in menu.php in phpMytourney allows remote attackers to execute arbitrary PHP code via a URL in the functions_file parameter.

    Published: 8 Sept 2007