CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-2007-4369

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in go/_files in SOTEeSKLEP before 4.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.

    Published: 15 Aug 2007
    7.5
    High

    CVE-2007-4370

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in the (1) client and (2) server in Racer 0.5.3 beta 5 allow remote attackers to execute arbitrary code via a long string to UDP port 26000.

    Published: 15 Aug 2007
    6.8
    Medium

    CVE-2007-4371

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in admin/pages/blog-add.php in Neuron Blog 1.1 allows remote attackers to upload and execute arbitrary PHP files in uploads/.

    Published: 15 Aug 2007
    7.5
    High

    CVE-2007-4278

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the giomgr process in ESRI ArcSDE service 9.2, as used with ArcGIS, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large number that requires more than 8 bytes to represent in ASCII, which triggers the overflow in an sprintf function call.

    Published: 15 Aug 2007
    6.8
    Medium

    CVE-2007-0319

    Last Modified: 23 Apr 2026

    Multiple stack-based buffer overflows in the Motive ActiveEmailTest.EmailData (ActiveUtils EmailData) ActiveX control in ActiveUtils.dll in Motive Service Activation Manager 5.1 and Self Service Manager 5.1 and earlier allow remote attackers to execute arbitrary code via unspecified vectors.

    Published: 15 Aug 2007
    5.8
    Medium

    CVE-2007-2928

    Last Modified: 23 Apr 2026

    Format string vulnerability in the IBM Lenovo Access Support acpRunner ActiveX control, as distributed in acpcontroller.dll before 1.2.8.0 and possibly acpir.dll before 1.0.0.9 (Automated Solutions 1.0 before fix pack 1), allows remote attackers to execute arbitrary code via format string specifiers in unknown data.

    Published: 15 Aug 2007
    5.8
    Medium

    CVE-2007-2929

    Last Modified: 23 Apr 2026

    The IBM Lenovo Access Support acpRunner ActiveX control, as distributed in acpcontroller.dll before 1.2.8.0 and possibly acpir.dll before 1.0.0.9 (Automated Solutions 1.0 before fix pack 1), exposes unsafe methods to arbitrary web domains, which allows remote attackers to download arbitrary code onto a client system and execute this code.

    Published: 15 Aug 2007
    4.3
    Medium

    CVE-2007-4358

    Last Modified: 23 Apr 2026

    Zoidcom 0.6.7 and earlier allows remote attackers to cause a denial of service (application crash) via a JOIN packet (aka connection packet) containing 0x69 in the ninth byte, which triggers a "double-delete" of trace data, a different vulnerability than CVE-2005-1643.

    Published: 15 Aug 2007
    10
    Critical

    CVE-2007-4361

    Last Modified: 23 Apr 2026

    NETGEAR (formerly Infrant) ReadyNAS RAIDiator before 4.00b2-p2-T1 beta creates a default SSH root password derived from the hardware serial number, which makes it easier for remote attackers to guess the password and obtain login access.

    Published: 15 Aug 2007
    6.8
    Medium

    CVE-2007-4362

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in category.php in Prozilla Webring allows remote attackers to execute arbitrary SQL commands via the cat parameter.

    Published: 15 Aug 2007
    5
    Medium

    CVE-2007-4366

    Last Modified: 23 Apr 2026

    WengoPhone 2.1 allows remote attackers to cause a denial of service (device crash) via a SIP INVITE message without a Content-Type header.

    Published: 15 Aug 2007
    6.8
    Medium

    CVE-2007-4359

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in SkilMatch Staffing Systems JobLister3 allow remote attackers to execute arbitrary SQL commands via (1) the search form or (2) the jobid parameter to index.php in a showbyID action.

    Published: 15 Aug 2007
    8.5
    High

    CVE-2007-4364

    Last Modified: 23 Apr 2026

    Fedora Commons before 2.2.1 does not properly handle certain authentication requests involving Java Naming and Directory Interface (JNDI), related to (1) a nonexistent account name in combination with an empty password, which allows remote attackers to trigger a certain "unexpected / strange response" from an LDAP server, and (2) a reauthentication attempt that throws an exception, which allows remote attackers to trigger use of a cached authentication decision. NOTE: authentication can be bypassed by using vector 1 followed by vector 2, and possibly can be bypassed by using a single vector.

    Published: 15 Aug 2007
    5.8
    Medium

    CVE-2007-2240

    Last Modified: 23 Apr 2026

    The IBM Lenovo Access Support acpRunner ActiveX control, as distributed in acpcontroller.dll before 1.2.8.0 and possibly acpir.dll before 1.0.0.9 (Automated Solutions 1.0 before fix pack 1), does not properly validate digital signatures of downloaded software, which makes it easier for remote attackers to spoof a download.

    Published: 15 Aug 2007
    4.3
    Medium

    CVE-2007-4360

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Dell Remote Access Card 4 (DRAC4) with firmware 1.50 Build 02.16 allows remote attackers to cause a denial of service (SSH daemon crash) via certain network traffic, as demonstrated by an "nmap -O" scan with nmap 4.03, possibly related to a Mocana (Mocanada) SSH vulnerability.

    Published: 15 Aug 2007
    4.3
    Medium

    CVE-2007-4363

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in the nodereference module in Drupal Content Construction Kit (CCK) before 4.7.x-1.6, and 5.x before 5.x-1.6 ,allow remote attackers to inject arbitrary web script or HTML via nodereference fields, when using (1) the plain formatter or (2) the autocomplete text field widget without Views.module.

    Published: 15 Aug 2007
    4.3
    Medium

    CVE-2007-4365

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in eXV2 CMS 2.0.5 and earlier allows remote attackers to inject arbitrary web script or HTML via a set_lang cookie to an unspecified component. NOTE: this may overlap CVE-2007-1965.

    Published: 15 Aug 2007
    7.2
    High

    CVE-2007-4354

    Last Modified: 23 Apr 2026

    Buffer overflow in fileplace in bos.perf.tools in IBM AIX 5.2 and 5.3 allows local users to gain privileges via unspecified vectors.

    Published: 15 Aug 2007
    7.2
    High

    CVE-2007-4355

    Last Modified: 23 Apr 2026

    Buffer overflow in the at program on IBM AIX 5.3 allows local users to gain privileges via unspecified vectors.

    Published: 15 Aug 2007
    6.9
    Medium

    CVE-2007-4353

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in IBM AIX 5.2 and 5.3 allow local users in the system group to gain root privileges via unspecified vectors involving the (1) chpath, (2) rmpath, and (3) devinstall programs in bos.rte.methods.

    Published: 15 Aug 2007
    6.8
    Medium

    CVE-2007-4091

    Last Modified: 23 Apr 2026

    Multiple off-by-one errors in the sender.c in rsync 2.6.9 might allow remote attackers to execute arbitrary code via directory names that are not properly handled when calling the f_name function.

    Published: 15 Aug 2007
    5
    Medium

    CVE-2007-4357

    Last Modified: 23 Apr 2026

    Mozilla Firefox 2.0.0.6 and earlier allows remote attackers to spoof the contents of the status bar via a link to a data: URI containing an encoded URL. NOTE: the severity of this issue has been disputed by a reliable third party, since the intended functionality of the status bar allows it to be modified.

    Published: 15 Aug 2007
    9.3
    Critical

    CVE-2007-4356

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 6 and 7 embeds FTP credentials in HTML files that are retrieved during an FTP session, which allows context-dependent attackers to obtain sensitive information by reading the HTML source, as demonstrated by a (1) .htm, (2) .html, or (3) .mht file.

    Published: 15 Aug 2007
    9.3
    Critical

    CVE-2007-4381

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the font parsing implementation in Sun JDK and JRE 5.0 Update 9 and earlier, and SDK and JRE 1.4.2_14 and earlier, allows remote attackers to perform unauthorized actions via an applet that grants certain privileges to itself.

    Published: 15 Aug 2007
    9.3
    Critical

    CVE-2007-0948

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in Microsoft Virtual PC 2004 and PC for Mac 7.1 and 7, and Virtual Server 2005 and 2005 R2, allows local guest OS administrators to execute arbitrary code on the host OS via unspecified vectors related to "interaction and initialization of components."

    Published: 14 Aug 2007
    9.3
    Critical

    CVE-2007-1749

    Last Modified: 23 Apr 2026

    Integer underflow in the CDownloadSink class code in the Vector Markup Language (VML) component (VGX.DLL), as used in Internet Explorer 5.01, 6, and 7 allows remote attackers to execute arbitrary code via compressed content with an invalid buffer size, which triggers a heap-based buffer overflow.

    Published: 14 Aug 2007
    6.8
    Medium

    CVE-2007-3032

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Windows Vista Contacts Gadget in Windows Vista allows user-assisted remote attackers to execute arbitrary code via crafted contact information that is not properly handled when it is imported.

    Published: 14 Aug 2007
    4.3
    Medium

    CVE-2007-3033

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Windows Vista Feed Headlines Gadget (aka Sidebar RSS Feeds Gadget) in Windows Vista allows user-assisted remote attackers to execute arbitrary code via an RSS feed with crafted HTML attributes, which are not properly removed and are rendered in the local zone.

    Published: 14 Aug 2007
    6.8
    Medium

    CVE-2007-3891

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Windows Vista Weather Gadgets in Windows Vista allows remote attackers to execute arbitrary code via crafted HTML attributes.

    Published: 14 Aug 2007
    6.8
    Medium

    CVE-2007-0943

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Internet Explorer 5.01 and 6 SP1 allows remote attackers to execute arbitrary code via crafted Cascading Style Sheets (CSS) strings that trigger memory corruption during parsing, related to use of out-of-bounds pointers.

    Published: 14 Aug 2007
    9.3
    Critical

    CVE-2007-3041

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the pdwizard.ocx ActiveX object for Internet Explorer 5.01, 6 SP1, and 7 allows remote attackers to execute arbitrary code via unknown vectors related to Microsoft Visual Basic 6 objects and memory corruption, aka "ActiveX Object Memory Corruption Vulnerability."

    Published: 14 Aug 2007
    9.3
    Critical

    CVE-2007-3890

    Last Modified: 23 Apr 2026

    Microsoft Excel in Office 2000 SP3, Office XP SP3, Office 2003 SP2, and Office 2004 for Mac allows remote attackers to execute arbitrary code via a Workspace with a certain index value that triggers memory corruption.

    Published: 14 Aug 2007
    9.3
    Critical

    CVE-2007-3034

    Last Modified: 23 Apr 2026

    Integer overflow in the AttemptWrite function in Graphics Rendering Engine (GDI) on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted metafile (image) with a large record length value, which triggers a heap-based buffer overflow.

    Published: 14 Aug 2007
    4
    Medium

    CVE-2007-3037

    Last Modified: 23 Apr 2026

    Microsoft Windows Media Player 7.1, 9, 10, and 11 allows remote attackers to execute arbitrary code via a skin file (WMZ or WMD) with crafted header information that causes a size mismatch between compressed and decompressed data and triggers a heap-based buffer overflow, aka "Windows Media Player Code Execution Vulnerability Parsing Skins."

    Published: 14 Aug 2007
    9.3
    Critical

    CVE-2007-2216

    Last Modified: 23 Apr 2026

    The tblinf32.dll (aka vstlbinf.dll) ActiveX control for Internet Explorer 5.01, 6 SP1, and 7 uses an incorrect IObjectsafety implementation, which allows remote attackers to execute arbitrary code by requesting the HelpString property, involving a crafted DLL file argument to the TypeLibInfoFromFile function, which overwrites the HelpStringDll property to call the DLLGetDocumentation function in another DLL file, aka "ActiveX Object Vulnerability."

    Published: 14 Aug 2007
    9.3
    Critical

    CVE-2007-2223

    Last Modified: 23 Apr 2026

    Microsoft XML Core Services (MSXML) 3.0 through 6.0 allows remote attackers to execute arbitrary code via the substringData method on a (1) TextNode or (2) XMLDOM object, which causes an integer overflow that leads to a buffer overflow.

    Published: 14 Aug 2007
    9.3
    Critical

    CVE-2007-2224

    Last Modified: 23 Apr 2026

    Object linking and embedding (OLE) Automation, as used in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Office 2004 for Mac, and Visual Basic 6.0 allows remote attackers to execute arbitrary code via the substringData method on a TextNode object, which causes an integer overflow that leads to a buffer overflow.

    Published: 14 Aug 2007
    7.6
    High

    CVE-2007-3035

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Microsoft Windows Media Player 7.1, 9, 10, and 11 allows remote attackers to execute arbitrary code via a skin file (WMZ or WMD) with crafted header information that is not properly handled during decompression, aka "Windows Media Player Code Execution Vulnerability Decompressing Skins."

    Published: 14 Aug 2007
    7.5
    High

    CVE-2007-4332

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in article.php in Article Dashboard, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the id parameter in a print action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 14 Aug 2007
    4.3
    Medium

    CVE-2007-4333

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in signup.php in Article Dashboard allow remote attackers to inject arbitrary web script or HTML via the (1) f_emailaddress, (2) f_reemailaddress, and other unspecified parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 14 Aug 2007
    4.3
    Medium

    CVE-2007-4334

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in whois.php in Php-stats 0.1.9.2 allows remote attackers to inject arbitrary web script or HTML via the IP parameter.

    Published: 14 Aug 2007
    7.5
    High

    CVE-2007-4339

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in PHPCentral Poll Script 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the _SERVER[DOCUMENT_ROOT] parameter in (1) poll.php and (2) pollarchive.php. NOTE: a reliable third party states that this issue is resultant from a variable extraction error in functions.php.

    Published: 14 Aug 2007
    7.5
    High

    CVE-2007-4340

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in index.php in phpDVD 1.0.4 allows remote attackers to execute arbitrary PHP code via a URL in the dvd_config_file parameter.

    Published: 14 Aug 2007
    5.8
    Medium

    CVE-2007-4337

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in the httplib_parse_sc_header function in lib/http.c in Streamripper before 1.62.2 allow remote attackers to execute arbitrary code via long (1) Location and (2) Server HTTP headers, a different vulnerability than CVE-2006-3124.

    Published: 14 Aug 2007
    5
    Medium

    CVE-2007-4335

    Last Modified: 23 Apr 2026

    Format string vulnerability in the SMTP server component in Qbik WinGate 5.x and 6.x before 6.2.2 allows remote attackers to cause a denial of service (service crash) via format string specifiers in certain unexpected commands, which trigger a crash during error logging.

    Published: 14 Aug 2007
    10
    Critical

    CVE-2007-4338

    Last Modified: 23 Apr 2026

    index.php in Ryan Haudenschilt Family Connections (FCMS) before 0.9 allows remote attackers to access an arbitrary account by placing the account's name in the value of an fcms_login_id cookie. NOTE: this can be leveraged for code execution via a POST with PHP code in the content parameter.

    Published: 14 Aug 2007
    7.5
    High

    CVE-2007-4342

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in include.php in PHPCentral Login 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the _SERVER[DOCUMENT_ROOT] parameter. NOTE: a third party disputes this vulnerability because of the special nature of the SERVER superglobal array.

    Published: 14 Aug 2007
    4.3
    Medium

    CVE-2007-4336

    Last Modified: 23 Apr 2026

    Buffer overflow in the Live Picture Corporation DXSurface.LivePicture.FlashPix.1 (DirectTransform FlashPix) ActiveX control in DXTLIPI.DLL 6.0.2.827, as packaged in Microsoft DirectX Media 6.0 SDK, allows remote attackers to execute arbitrary code via a long SourceUrl property value.

    Published: 14 Aug 2007
    7.5
    High

    CVE-2007-4341

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in adm/my_statistics.php in Omnistar Lib2 PHP 0.2 allows remote attackers to execute arbitrary PHP code via a URL in the DOCUMENT_ROOT parameter.

    Published: 14 Aug 2007
    4.3
    Medium

    CVE-2007-3382

    Last Modified: 23 Apr 2026

    Apache Tomcat 6.0.0 to 6.0.13, 5.5.0 to 5.5.24, 5.0.0 to 5.0.30, 4.1.0 to 4.1.36, and 3.3 to 3.3.2 treats single quotes ("'") as delimiters in cookies, which might cause sensitive information such as session IDs to be leaked and allow remote attackers to conduct session hijacking attacks.

    Published: 14 Aug 2007