CVE Feed

    Dashboard / CVE

    1.9
    Low

    CVE-2007-3848

    Last Modified: 23 Apr 2026

    Linux kernel 2.4.35 and other versions allows local users to send arbitrary signals to a child process that is running at higher privileges by causing a setuid-root parent process to die, which delivers an attacker-controlled parent process death signal (PR_SET_PDEATHSIG).

    Published: 14 Aug 2007
    7.5
    High

    CVE-2007-4320

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in admin/addons/archive/archive.php in Ncaster 1.7.2 allows remote attackers to execute arbitrary PHP code via a URL in the adminfolder parameter.

    Published: 14 Aug 2007
    6.8
    Medium

    CVE-2007-4325

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in index.php in Gaestebuch 1.5 allows remote attackers to execute arbitrary PHP code via a URL in the config[root_ordner] parameter.

    Published: 14 Aug 2007
    6.8
    Medium

    CVE-2007-4326

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Bilder Uploader 1.3 allow remote attackers to execute arbitrary PHP code via a URL in the config[root_ordner] parameter to (1) gruppen.php, (2) bild.php, (3) feed.php, (4) mitglieder.php, (5) online.php, (6) profil.php, and possibly other unspecified PHP scripts.

    Published: 14 Aug 2007
    4.3
    Medium

    CVE-2007-4331

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in index.php in FindNix allows remote attackers to include the contents of arbitrary URLs and conduct cross-site scripting (XSS) attacks via a URL in the page parameter.

    Published: 14 Aug 2007
    4.3
    Medium

    CVE-2007-3386

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the Host Manager Servlet for Apache Tomcat 6.0.0 to 6.0.13 and 5.5.0 to 5.5.24 allows remote attackers to inject arbitrary HTML and web script via crafted requests, as demonstrated using the aliases parameter to an html/add action.

    Published: 14 Aug 2007
    6.8
    Medium

    CVE-2007-4322

    Last Modified: 23 Apr 2026

    BlockHosts before 2.0.4 does not properly parse (1) sshd and (2) vsftpd log files, which allows remote attackers to add arbitrary deny entries to the /etc/hosts.allow file and cause a denial of service by adding arbitrary IP addresses to a daemon log file, as demonstrated by connecting through ssh with a client protocol version identification containing an IP address string, or connecting through ftp with a username containing an IP address string, different vectors than CVE-2007-2765.

    Published: 14 Aug 2007
    6.8
    Medium

    CVE-2007-4328

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Mapos Bilder Galerie 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the config[root_ordner] parameter to (1) index.php, (2) galerie.php, or (3) anzagien.php. NOTE: A later report states that 1.1 is also affected, but that the filename for vector 3 is anzeigen.php.

    Published: 14 Aug 2007
    6.8
    Medium

    CVE-2007-4329

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Web News 1.1 allow remote attackers to execute arbitrary PHP code via a URL in the config[root_ordner] parameter to (1) index.php, (2) news.php, or (3) feed.php.

    Published: 14 Aug 2007
    4.3
    Medium

    CVE-2007-3385

    Last Modified: 23 Apr 2026

    Apache Tomcat 6.0.0 to 6.0.13, 5.5.0 to 5.5.24, 5.0.0 to 5.0.30, 4.1.0 to 4.1.36, and 3.3 to 3.3.2 does not properly handle the \" character sequence in a cookie value, which might cause sensitive information such as session IDs to be leaked to remote attackers and enable session hijacking attacks.

    Published: 14 Aug 2007
    6.8
    Medium

    CVE-2007-4323

    Last Modified: 23 Apr 2026

    DenyHosts 2.6 does not properly parse sshd log files, which allows remote attackers to add arbitrary hosts to the /etc/hosts.deny file and cause a denial of service by adding arbitrary IP addresses to the sshd log file, as demonstrated by logging in via ssh with a client protocol version identification containing an IP address string, a different vector than CVE-2006-6301.

    Published: 14 Aug 2007
    6.8
    Medium

    CVE-2007-4330

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in shoutbox.php in Shoutbox 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the root parameter.

    Published: 14 Aug 2007
    6.8
    Medium

    CVE-2007-4321

    Last Modified: 23 Apr 2026

    fail2ban 0.8 and earlier does not properly parse sshd log files, which allows remote attackers to add arbitrary hosts to the /etc/hosts.deny file and cause a denial of service by adding arbitrary IP addresses to the sshd log file, as demonstrated by logging in via ssh with a client protocol version identification containing an IP address string, a different vector than CVE-2006-6302.

    Published: 14 Aug 2007
    6.8
    Medium

    CVE-2007-4327

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in File Uploader 1.1 allow remote attackers to execute arbitrary PHP code via a URL in the config[root_ordner] parameter to (1) index.php or (2) datei.php.

    Published: 14 Aug 2007
    6.2
    Medium

    CVE-2007-4302

    Last Modified: 23 Apr 2026

    Multiple race conditions in certain system call wrappers in Generic Software Wrappers Toolkit (GSWTK) allow local users to defeat system call interposition and possibly gain privileges or bypass auditing.

    Published: 13 Aug 2007
    6.2
    Medium

    CVE-2007-4303

    Last Modified: 23 Apr 2026

    Multiple race conditions in (1) certain rules and (2) argument copying during VM protection, in CerbNG for FreeBSD 4.8 allow local users to defeat system call interposition and possibly gain privileges or bypass auditing, as demonstrated by modifying command lines in log-exec.cb.

    Published: 13 Aug 2007
    6.2
    Medium

    CVE-2007-4304

    Last Modified: 23 Apr 2026

    CerbNG for FreeBSD 4.8 does not properly implement VM protection when attempting to prevent system call wrapper races, which allows local users to have an unknown impact related to an "incorrect write protection of pages".

    Published: 13 Aug 2007
    6.2
    Medium

    CVE-2007-4305

    Last Modified: 23 Apr 2026

    Multiple race conditions in the (1) Sudo monitor mode and (2) Sysjail policies in Systrace on NetBSD and OpenBSD allow local users to defeat system call interposition, and consequently bypass access control policy and auditing.

    Published: 13 Aug 2007
    4.3
    Medium

    CVE-2007-4310

    Last Modified: 23 Apr 2026

    The finger daemon (in.fingerd) in Sun Solaris 7 through 9 allows remote attackers to list all accounts that have certain nonstandard GECOS fields via a request composed of a single digit, as demonstrated by a "finger 9@host" command, a different vulnerability than CVE-2001-1503.

    Published: 13 Aug 2007
    7.5
    High

    CVE-2007-4312

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in Php Blue Dragon CMS 3.0.0 allows remote attackers to execute arbitrary SQL commands via the article_id parameter in a "print articles" action.

    Published: 13 Aug 2007
    6.8
    Medium

    CVE-2007-4313

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in public_includes/pub_blocks/activecontent.php in Php Blue Dragon CMS 3.0.0 allows remote attackers to execute arbitrary PHP code via a URL in the vsDragonRootPath parameter, a different vector than CVE-2006-2392, CVE-2006-3076, and CVE-2006-6958.

    Published: 13 Aug 2007
    3.5
    Low

    CVE-2007-4309

    Last Modified: 23 Apr 2026

    IBM Lotus Notes 5.x through 7.0.2 allows user-assisted remote authenticated administrators to obtain a cleartext notes.id password by setting the notes.ini (1) KFM_ShowEntropy and (2) Debug_Outfile debug variables, a different vulnerability than CVE-2005-2696.

    Published: 13 Aug 2007
    4.3
    Medium

    CVE-2007-4316

    Last Modified: 23 Apr 2026

    The management interface in ZyNOS firmware 3.62(WK.6) on the Zyxel Zywall 2 device has a certain default password, which allows remote attackers to perform administrative actions.

    Published: 13 Aug 2007
    4.3
    Medium

    CVE-2007-4317

    Last Modified: 23 Apr 2026

    Multiple cross-site request forgery (CSRF) vulnerabilities in the management interface in ZyNOS firmware 3.62(WK.6) on the Zyxel Zywall 2 device allow remote attackers to perform certain actions as administrators, as demonstrated by a request to Forms/General_1 with the (1) sysSystemName and (2) sysDomainName parameters.

    Published: 13 Aug 2007
    4.3
    Medium

    CVE-2007-4318

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Forms/General_1 in the management interface in ZyNOS firmware 3.62(WK.6) on the Zyxel Zywall 2 device allows remote authenticated administrators to inject arbitrary web script or HTML via the sysSystemName parameter.

    Published: 13 Aug 2007
    4
    Medium

    CVE-2007-4319

    Last Modified: 23 Apr 2026

    The management interface in ZyNOS firmware 3.62(WK.6) on the Zyxel Zywall 2 device allows remote authenticated administrators to cause a denial of service (infinite reboot loop) via invalid configuration data. NOTE: this issue might not cross privilege boundaries, and it might be resultant from CSRF; if so, then it should not be included in CVE.

    Published: 13 Aug 2007
    4.3
    Medium

    CVE-2007-4307

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Storesprite 7 and earlier allow remote attackers to inject arbitrary web script or HTML via the next parameter to (1) addaddress.php, (2) editshipdetails.php, (3) register.php, or (4) login.php in secure/.

    Published: 13 Aug 2007
    4.3
    Medium

    CVE-2007-4306

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 2.10.3 allow remote attackers to inject arbitrary web script or HTML via the (1) unlim_num_rows, (2) sql_query, or (3) pos parameter to (a) tbl_export.php; the (4) session_max_rows or (5) pos parameter to (b) sql.php; the (6) username parameter to (c) server_privileges.php; or the (7) sql_query parameter to (d) main.php. NOTE: vector 5 might be a regression or incomplete fix for CVE-2006-6942.7.

    Published: 13 Aug 2007
    6.8
    Medium

    CVE-2007-4311

    Last Modified: 23 Apr 2026

    The xfer_secondary_pool function in drivers/char/random.c in the Linux kernel 2.4 before 2.4.35 performs reseed operations on only the first few bytes of a buffer, which might make it easier for attackers to predict the output of the random number generator, related to incorrect use of the sizeof operator.

    Published: 13 Aug 2007
    6.9
    Medium

    CVE-2007-4315

    Last Modified: 23 Apr 2026

    The AMD ATI atidsmxx.sys 3.0.502.0 driver on Windows Vista allows local users to bypass the driver signing policy, write to arbitrary kernel memory locations, and thereby gain privileges via unspecified vectors, as demonstrated by "Purple Pill".

    Published: 13 Aug 2007
    6.8
    Medium

    CVE-2007-4314

    Last Modified: 23 Apr 2026

    pixlie.php in Pixlie 1.7 allows remote attackers to trigger the reading and JPEG image processing of files in a remote directory tree via a URL in the root parameter. NOTE: this can be leveraged for traffic amplification or other denial of service.

    Published: 13 Aug 2007
    4.3
    Medium

    CVE-2007-4301

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in the management interface in WebCart 2.20 through 2.25 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 13 Aug 2007
    6.8
    Medium

    CVE-2007-2956

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the readRadianceHeader function in (1) src/fileformat/rgbeio.cpp in pfstools 1.6.2 and (2) src/Fileformat/rgbeio.cpp in Qtpfsgui 1.8.11 allows remote attackers to execute arbitrary code via a crafted Radiance RGBE (.hdr) file.

    Published: 13 Aug 2007
    6.8
    Medium

    CVE-2007-4131

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the contains_dot_dot function in src/names.c in GNU tar allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.

    Published: 12 Aug 2007
    7.5
    High

    CVE-2007-4296

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in assp.pl in Anti-Spam SMTP Proxy Server (ASSP) 1.3.3 has unknown impact and attack vectors.

    Published: 10 Aug 2007
    4.3
    Medium

    CVE-2007-4297

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in yorumkaydet.asp in Dersimiz Haber Ekleme Modulu allow remote attackers to inject arbitrary web script or HTML via the (1) yazan, (2) mail, and (3) yorum parameters. NOTE: some of these details are obtained from third party information.

    Published: 10 Aug 2007
    4.4
    Medium

    CVE-2007-3852

    Last Modified: 23 Apr 2026

    The init script (sysstat.in) in sysstat 5.1.2 up to 7.1.6 creates /tmp/sysstat.run insecurely, which allows local users to execute arbitrary code.

    Published: 10 Aug 2007
    8.5
    High

    CVE-2007-6350

    Last Modified: 23 Apr 2026

    scponly 4.6 and earlier allows remote authenticated users to bypass intended restrictions and execute code by invoking dangerous subcommands including (1) unison, (2) rsync, (3) svn, and (4) svnserve, as originally demonstrated by creating a Subversion (SVN) repository with malicious hooks, then using svn to trigger execution of those hooks.

    Published: 10 Aug 2007
    Unknown

    CVE-2007-4274

    Last Modified: 17 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-4275. Reason: This candidate is a reservation duplicate of CVE-2007-4275. Notes: All CVE users should reference CVE-2007-4275 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 9 Aug 2007
    6.8
    Medium

    CVE-2007-4295

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Cisco IOS 12.0 through 12.4 allows remote attackers to execute arbitrary code via a malformed SIP packet, aka CSCsi80749.

    Published: 9 Aug 2007
    7.5
    High

    CVE-2007-4287

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in fc_functions/fc_example.php in FishCart 3.2 RC2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the docroot parameter.

    Published: 9 Aug 2007
    9.8
    Critical

    CVE-2007-4290

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Guestbook Script 1.9 allow remote attackers to execute arbitrary PHP code via a URL in the script_root parameter to (1) delete.php, (2) edit.php, or (3) inc/common.inc.php; or (4) database.php, (5) entries.php, (6) index.php, (7) logout.php, or (8) settings.php in admin/. NOTE: a third party disputes this vulnerability, noting that these scripts defend against direct requests

    Published: 9 Aug 2007
    4.3
    Medium

    CVE-2007-4288

    Last Modified: 23 Apr 2026

    Microsoft Windows Media Player 11 (wmplayer.exe) allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted .au file that triggers a divide-by-zero error, as demonstrated by iapetus.au.

    Published: 9 Aug 2007
    4.3
    Medium

    CVE-2007-4281

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in KnowledgeTree Open Source 3.4 and 3.4.1 allows remote attackers to inject arbitrary web script or HTML via the login field on the login page, and other unspecified vectors.

    Published: 9 Aug 2007
    6.8
    Medium

    CVE-2007-2955

    Last Modified: 23 Apr 2026

    Multiple unspecified "input validation error" vulnerabilities in multiple ActiveX controls in NavComUI.dll, as used in multiple Norton AntiVirus, Internet Security, and System Works products for 2006, allows remote attackers to execute arbitrary code via (1) the AnomalyList property to AxSysListView32 and (2) Anomaly property to AxSysListView32OAA.

    Published: 9 Aug 2007
    7.1
    High

    CVE-2007-4291

    Last Modified: 23 Apr 2026

    Cisco IOS 12.0 through 12.4 allows remote attackers to cause a denial of service via (1) a malformed MGCP packet, which causes a device hang, aka CSCsf08998; a malformed H.323 packet, which causes a device crash, as identified by (2) CSCsi60004 with Proxy Unregistration and (3) CSCsg70474; and a malformed Real-time Transport Protocol (RTP) packet, which causes a device crash, as identified by (4) CSCse68138, related to VOIP RTP Lib, and (5) CSCse05642, related to I/O memory corruption.

    Published: 9 Aug 2007
    3.5
    Low

    CVE-2007-4280

    Last Modified: 23 Apr 2026

    The Skinny channel driver (chan_skinny) in Asterisk Open Source before 1.4.10, AsteriskNOW before beta7, Appliance Developer Kit before 0.7.0, and Appliance s800i before 1.0.3 allows remote authenticated users to cause a denial of service (application crash) via a CAPABILITIES_RES_MESSAGE packet with a capabilities count larger than the capabilities_res_message array population.

    Published: 9 Aug 2007
    7.5
    High

    CVE-2007-4279

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in config.php in FrontAccounting 1.12 Build 31 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_root parameter.

    Published: 9 Aug 2007
    6.8
    Medium

    CVE-2007-4289

    Last Modified: 23 Apr 2026

    Sun Java System Portal Server 7.0 does not properly process XSLT stylesheets in XSLT transforms in XML signatures, which allows context-dependent attackers to execute an arbitrary Java method via a crafted stylesheet, a related issue to CVE-2007-3715.

    Published: 9 Aug 2007
    9.3
    Critical

    CVE-2007-4292

    Last Modified: 23 Apr 2026

    Multiple memory leaks in Cisco IOS 12.0 through 12.4 allow remote attackers to cause a denial of service (device crash) via a malformed SIP packet, aka (1) CSCsf11855, (2) CSCeb21064, (3) CSCse40276, (4) CSCse68355, (5) CSCsf30058, (6) CSCsb24007, and (7) CSCsc60249.

    Published: 9 Aug 2007