CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2007-4627

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in ABC eStore 3.0 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.

    Published: 31 Aug 2007
    5
    Medium

    CVE-2007-4626

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Polipo before 1.0.2 allows remote attackers to cause a denial of service (daemon crash) via certain network traffic associated with entities larger than 2 Gb.

    Published: 31 Aug 2007
    4.3
    Medium

    CVE-2007-4625

    Last Modified: 23 Apr 2026

    Polipo before 1.0.2 allows remote HTTP servers to cause a denial of service (daemon crash) by aborting the response to a POST request.

    Published: 31 Aug 2007
    4.3
    Medium

    CVE-2007-4624

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in pframe.php in AbleDesign Dynamic Picture Frame 1.00 allows remote attackers to inject arbitrary web script or HTML via the img_url parameter. NOTE: some of these details are obtained from third party information.

    Published: 31 Aug 2007
    7.5
    High

    CVE-2007-4605

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in convert/mvcw.php in Virtual War (VWar) 1.5.0 R15 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the vwar_root parameter, a different vector than CVE-2006-1503, CVE-2006-1636, and CVE-2006-1747.

    Published: 31 Aug 2007
    4.7
    Medium

    CVE-2007-3739

    Last Modified: 23 Apr 2026

    mm/mmap.c in the hugetlb kernel, when run on PowerPC systems, does not prevent stack expansion from entering into reserved kernel page memory, which allows local users to cause a denial of service (OOPS) via unspecified vectors.

    Published: 31 Aug 2007
    6.4
    Medium

    CVE-2007-4615

    Last Modified: 23 Apr 2026

    The SSL client implementation in BEA WebLogic Server 7.0 SP7, 8.1 SP2 through SP6, 9.0, 9.1, 9.2 Gold through MP2, and 10.0 sometimes selects the null cipher when others are available, which might allow remote attackers to intercept communications.

    Published: 31 Aug 2007
    6.8
    Medium

    CVE-2007-4613

    Last Modified: 23 Apr 2026

    SSL libraries in BEA WebLogic Server 6.1 Gold through SP7, 7.0 Gold through SP7, and 8.1 Gold through SP5 might allow remote attackers to obtain plaintext from an SSL stream via a man-in-the-middle attack that injects crafted data and measures the elapsed time before an error response, a different vulnerability than CVE-2006-2461.

    Published: 31 Aug 2007
    9.3
    Critical

    CVE-2007-4607

    Last Modified: 23 Apr 2026

    Buffer overflow in the EasyMailSMTPObj ActiveX control in emsmtp.dll 6.0.1 in the Quiksoft EasyMail SMTP Object, as used in Postcast Server Pro 3.0.61 and other products, allows remote attackers to execute arbitrary code via a long argument to the SubmitToExpress method, a different vulnerability than CVE-2007-1029. NOTE: this may have been fixed in version 6.0.3.15.

    Published: 31 Aug 2007
    9.3
    Critical

    CVE-2007-4467

    Last Modified: 23 Apr 2026

    Multiple stack-based buffer overflows in the Oracle JInitiator ActiveX control (beans.ocx) 1.1.8.16 and earlier, as used by Oracle Forms applications from Oracle and third parties, allow remote attackers to execute arbitrary code via unspecified "initialization parameters." NOTE: it was later reported that 1.1.8.3 through 1.1.8.25, and probably 1.1.5.x and 1.1.7.x, are affected.

    Published: 31 Aug 2007
    7.5
    High

    CVE-2007-4614

    Last Modified: 23 Apr 2026

    BEA WebLogic Server 9.1 does not properly handle propagation of an admin server's security policy change log to temporarily unavailable managed servers, which might allow attackers to bypass intended restrictions, a different vulnerability than CVE-2007-0426.

    Published: 31 Aug 2007
    7.5
    High

    CVE-2007-4606

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in convert/mvcw_conver.php in the Virtual War (VWar) module for PHPNuke-Clan (PNC) 4.2.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the vwar_root parameter, a different vector than CVE-2006-1602. NOTE: it is possible that this issue stems from a problem in VWar itself.

    Published: 31 Aug 2007
    6.2
    Medium

    CVE-2007-4135

    Last Modified: 23 Apr 2026

    The NFSv4 ID mapper (nfsidmap) before 0.17 does not properly handle return values from the getpwnam_r function when performing a username lookup, which can cause it to report a file as being owned by "root" instead of "nobody" if the file exists on the server but not on the client.

    Published: 31 Aug 2007
    6.8
    Medium

    CVE-2007-4602

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in cms/revert-content.php in Implied by Design Micro CMS (Micro-CMS) 3.5 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 31 Aug 2007
    7.5
    High

    CVE-2007-4603

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in index.php in ACG News 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the aid parameter in a showarticle action or (2) the catid parameter in a showcat action.

    Published: 31 Aug 2007
    7.5
    High

    CVE-2007-4604

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in viewitem.php in DL PayCart 1.01 allows remote attackers to execute arbitrary SQL commands via the ItemID parameter.

    Published: 31 Aug 2007
    7.5
    High

    CVE-2007-4608

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in protection.php in ePersonnel RC_2004_02 allows remote attackers to execute arbitrary PHP code via a URL in the logout_page parameter.

    Published: 31 Aug 2007
    6.4
    Medium

    CVE-2007-4609

    Last Modified: 23 Apr 2026

    eyeOS uses predictable checksum values in the checknum parameter for access control, which allows remote attackers to register many accounts via doCreateUser actions, add many eyeBoard messages via addMsg actions, and cause a denial of service or conduct certain unauthorized activities, by guessing valid parameter values.

    Published: 31 Aug 2007
    6.8
    Medium

    CVE-2007-4610

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in config/upload.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to upload and execute arbitrary PHP files in images/, possibly related to config/admin.php.

    Published: 31 Aug 2007
    7.5
    High

    CVE-2007-4611

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in viewevent.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 31 Aug 2007
    4.3
    Medium

    CVE-2007-4612

    Last Modified: 23 Apr 2026

    CRLF injection vulnerability in contact.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to add arbitrary mail headers via CRLF sequences in the subject parameter. NOTE: this can be leveraged for spam by adding To or Cc headers.

    Published: 31 Aug 2007
    6.4
    Medium

    CVE-2007-4616

    Last Modified: 23 Apr 2026

    The SSL server implementation in BEA WebLogic Server 7.0 Gold through SP7, 8.1 Gold through SP6, 9.0, 9.1, 9.2 Gold through MP1, and 10.0 sometimes selects the null cipher when no other cipher is compatible between the server and client, which might allow remote attackers to intercept communications.

    Published: 31 Aug 2007
    7.8
    High

    CVE-2007-4617

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in BEA WebLogic Server 6.1 Gold through SP7, 7.0 Gold through SP7, and 8.1 Gold through SP4 allows remote attackers to cause a denial of service (server thread hang) via unspecified vectors.

    Published: 31 Aug 2007
    7.8
    High

    CVE-2007-4618

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in BEA WebLogic Server 6.1 Gold through SP7 and 7.0 Gold through SP7 allows remote attackers to cause a denial of service (disk consumption) via certain malformed HTTP headers.

    Published: 31 Aug 2007
    7.5
    High

    CVE-2007-4596

    Last Modified: 23 Apr 2026

    The perl extension in PHP does not follow safe_mode restrictions, which allows context-dependent attackers to execute arbitrary code via the Perl eval function. NOTE: this might only be a vulnerability in limited environments.

    Published: 30 Aug 2007
    4.6
    Medium

    CVE-2007-4598

    Last Modified: 23 Apr 2026

    IBM SurePOS 500 has (1) a default password of "12345" for the manager and (2) blank default passwords for operator accounts.

    Published: 30 Aug 2007
    7.5
    High

    CVE-2007-4597

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in TurnkeyWebTools SunShop Shopping Cart 4.0 RC 6 allows remote attackers to execute arbitrary SQL commands via the s[cid] parameter in a search_list action, a different vector than CVE-2007-2549.

    Published: 30 Aug 2007
    5
    Medium

    CVE-2007-4670

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in PHP before 5.2.4 has unknown impact and attack vectors, related to an "Improved fix for MOPB-03-2007," probably a variant of CVE-2007-1285.

    Published: 30 Aug 2007
    7.5
    High

    CVE-2007-4661

    Last Modified: 23 Apr 2026

    The chunk_split function in string.c in PHP 5.2.3 does not properly calculate the needed buffer size due to precision loss when performing integer arithmetic with floating point numbers, which has unknown attack vectors and impact, possibly resulting in a heap-based buffer overflow. NOTE: this is due to an incomplete fix for CVE-2007-2872.

    Published: 30 Aug 2007
    7.5
    High

    CVE-2007-4659

    Last Modified: 23 Apr 2026

    The zend_alter_ini_entry function in PHP before 5.2.4 does not properly handle an interruption to the flow of execution triggered by a memory_limit violation, which has unknown impact and attack vectors.

    Published: 30 Aug 2007
    5
    Medium

    CVE-2007-3998

    Last Modified: 23 Apr 2026

    The wordwrap function in PHP 4 before 4.4.8, and PHP 5 before 5.2.4, does not properly use the breakcharlen variable, which allows remote attackers to cause a denial of service (divide-by-zero error and application crash, or infinite loop) via certain arguments, as demonstrated by a 'chr(0), 0, ""' argument set.

    Published: 30 Aug 2007
    6.8
    Medium

    CVE-2007-3996

    Last Modified: 23 Apr 2026

    Multiple integer overflows in libgd in PHP before 5.2.4 allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a large (1) srcW or (2) srcH value to the (a) gdImageCopyResized function, or a large (3) sy (height) or (4) sx (width) value to the (b) gdImageCreate or the (c) gdImageCreateTrueColor function.

    Published: 30 Aug 2007
    7.5
    High

    CVE-2007-4658

    Last Modified: 23 Apr 2026

    The money_format function in PHP 5 before 5.2.4, and PHP 4 before 4.4.8, permits multiple (1) %i and (2) %n tokens, which has unknown impact and attack vectors, possibly related to a format string vulnerability.

    Published: 30 Aug 2007
    7.5
    High

    CVE-2007-4660

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the chunk_split function in PHP before 5.2.4 has unknown impact and attack vectors, related to an incorrect size calculation.

    Published: 30 Aug 2007
    6.4
    Medium

    CVE-2007-4594

    Last Modified: 23 Apr 2026

    Entrust Entelligence Security Provider (ESP) 8 does not properly validate certificates in certain circumstances involving (1) a chain that omits the root Certification Authority (CA) certificate, or an application that specifies disregarding (2) unknown revocation statuses during path validation or (3) certain errors in the certification path, which might allow context-dependent attackers to spoof certificate authentication. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 29 Aug 2007
    4.3
    Medium

    CVE-2007-4595

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Mayaa before 1.1.12 allows remote attackers to inject arbitrary web script or HTML in certain circumstances involving (1) lack of charset specification within a META element or (2) a META element that specifies an unrecognized charset, which trigger automatic character set recognition by the web browser, as demonstrated by improper handling of UTF-7 data.

    Published: 29 Aug 2007
    6.9
    Medium

    CVE-2007-4593

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in vstor2-ws60.sys in VMWare Workstation 6.0 allows local users to cause a denial of service (host operating system crash) via unspecified vectors, as demonstrated by the DC2 test suite, possibly a related issue to CVE-2007-4591. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 29 Aug 2007
    6.9
    Medium

    CVE-2007-4591

    Last Modified: 23 Apr 2026

    vstor-ws60.sys in VMWare Workstation 6.0 allows local users to cause a denial of service (host operating system crash) and possibly gain privileges by sending a small file buffer size value to the FsSetVolumeInformation IOCTL handler with an FsSetFileInformation subcode.

    Published: 29 Aug 2007
    4.3
    Medium

    CVE-2007-4587

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Easy Software Cafeteria escafeWeb (aka Tuigwaa) 1.0 through 1.0.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly related to the setting of option.nopage.create in tuigwaa.properties.

    Published: 29 Aug 2007
    4.3
    Medium

    CVE-2007-4588

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in InterWorx Hosting Control Panel (InterWorx-CP) Server Admin Level (NodeWorx) 3.0.2 (1) allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php; and allow remote authenticated users to inject arbitrary web script or HTML via the PATH_INFO to (2) nodeworx.php, (3) users.php, (4) lang.php, (5) themes.php, (6) setup.php, (7) siteworx.php, (8) packages.php, (9) backup.php, (10) import.php, (11) scriptworx.php, (12) resellers.php, (13) reseller-packages.php, (14) http.php, (15) mail.php, (16) ftp.php, (17) mysql.php, (18) sshd.php, (19) nfs.php, (20) cron.php, (21) ip.php, (22) firewall.php, (23) updates.php, (24) rrd.php, or (25) cluster.php.

    Published: 29 Aug 2007
    7.5
    High

    CVE-2007-4586

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in php_iisfunc.dll in the iisfunc extension for PHP 5.2.0 and earlier allow context-dependent attackers to execute arbitrary code, probably during Unicode conversion, as demonstrated by a long string in the first argument to the iis_getservicestate function, related to the ServiceId argument to the (1) fnStartService, (2) fnGetServiceState, (3) fnStopService, and possibly other functions.

    Published: 29 Aug 2007
    7.5
    High

    CVE-2007-4585

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in activateuser.php in 2532|Gigs 1.2.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the language parameter.

    Published: 29 Aug 2007
    10
    Critical

    CVE-2007-4584

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in BitchX 1.1 Final allows remote IRC servers to execute arbitrary code via a long string in a MODE command, related to the p_mode variable.

    Published: 29 Aug 2007
    5
    Medium

    CVE-2007-4583

    Last Modified: 23 Apr 2026

    Multiple absolute path traversal vulnerabilities in the nvUtility.Utility.1 ActiveX control in nvUtility.dll 1.0.14.0 in ACTi Network Video Recorder (NVR) SP2 2.0 allow remote attackers to (1) create or overwrite arbitrary files via a full pathname in the first argument to the SaveXMLFile method or (2) delete arbitrary files via a full pathname in the argument to the DeleteXMLFile method.

    Published: 29 Aug 2007
    7.5
    High

    CVE-2007-4582

    Last Modified: 23 Apr 2026

    Buffer overflow in the nvUnifiedControl.AUnifiedControl.1 ActiveX control in nvUnifiedControl.dll 1.1.45.0 in ACTi Network Video Recorder (NVR) SP2 2.0 allows remote attackers to execute arbitrary code via a long second argument to the SetText method.

    Published: 29 Aug 2007
    7.5
    High

    CVE-2007-4581

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in acrotxt.php in WBB2-Addon: Acrotxt 1 allows remote attackers to execute arbitrary SQL commands via the show parameter.

    Published: 29 Aug 2007
    7.8
    High

    CVE-2007-4220

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in Motorola Timbuktu Pro before 8.6.5 for Windows allows remote attackers to create or delete arbitrary files via a .. (dot dot) in a Send request, probably related to the (1) Send and (2) Exchange services.

    Published: 29 Aug 2007
    4.3
    Medium

    CVE-2007-4589

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in InterWorx Hosting Control Panel (InterWorx-CP) Webmaster Level (SiteWorx) 3.0.2 (1) allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php; and allow remote authenticated users to inject arbitrary web script or HTML via the PATH_INFO to (2) siteworx.php, (3) users.php, (4) ftp.php, (5) mysql.php, (6) domains.php, (7) htaccess.php, (8) scriptworx.php, (9) stats.php, (10) backup.php, (11) restore.php, and (12) httpd.php; and unspecified vectors to (13) cron.php and (14) prefs.php.

    Published: 29 Aug 2007
    3.3
    Low

    CVE-2007-4590

    Last Modified: 23 Apr 2026

    The get_system_info command in Ignite-UX C.7.0 through C.7.3, and DynRootDisk (DRD) A.1.0.16.417 through A.2.0.0.592, on HP-UX B.11.11, B.11.23, and B.11.31 does not inform local users of networking changes made by the command, which has unknown impact and attack vectors.

    Published: 29 Aug 2007
    10
    Critical

    CVE-2007-4221

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in Motorola Timbuktu Pro before 8.6.5 for Windows allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via (1) a long user name and (2) certain malformed requests; and (3) allow remote Timbuktu servers to have an unknown impact via a malformed HELLO response, related to the Scanner component and possibly related to a malformed computer name.

    Published: 29 Aug 2007