CVE Feed

    Dashboard / CVE

    7.1
    High

    CVE-2007-4293

    Last Modified: 23 Apr 2026

    Cisco IOS 12.0 through 12.4 allows remote attackers to cause a denial of service (device crash) via (1) "abnormal" MGCP messages, aka CSCsd81407; and (2) a large facsimile packet, aka CSCej20505.

    Published: 9 Aug 2007
    6.8
    Medium

    CVE-2007-4294

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Cisco Unified Communications Manager (CUCM) 5.0, 5.1, and 6.0, and IOS 12.0 through 12.4, allows remote attackers to execute arbitrary code via a malformed SIP packet, aka CSCsi80102.

    Published: 9 Aug 2007
    9.3
    Critical

    CVE-2007-4286

    Last Modified: 23 Apr 2026

    Buffer overflow in the Next Hop Resolution Protocol (NHRP) functionality in Cisco IOS 12.0 through 12.4 allows remote attackers to cause a denial of service (restart) and execute arbitrary code via a crafted NHRP packet.

    Published: 9 Aug 2007
    9
    Critical

    CVE-2007-4285

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Cisco IOS and Cisco IOS XR 12.x up to 12.3, including some versions before 12.3(15) and 12.3(14)T, allows remote attackers to obtain sensitive information (partial packet contents) or cause a denial of service (router or component crash) via crafted IPv6 packets with a Type 0 routing header.

    Published: 9 Aug 2007
    4.3
    Medium

    CVE-2007-4284

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Cisco Unified MeetingPlace Web Conferencing (MP) 5.3.235.0 and earlier allow remote attackers to inject arbitrary HTML and web script via the (1) Success Template (STPL) and (2) Failure Template (FTPL) parameters, which are not properly handled in an error message.

    Published: 9 Aug 2007
    7.5
    High

    CVE-2007-4283

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in bridge/yabbse.inc.php in Coppermine Photo Gallery (CPG) 1.3.1 allows remote attackers to execute arbitrary PHP code via a URL in the sourcedir parameter.

    Published: 9 Aug 2007
    5
    Medium

    CVE-2007-4282

    Last Modified: 23 Apr 2026

    The "Extended properties for entries" (entryproperties) plugin in serendipity_event_entryproperties.php in Serendipity 1.1.3 allows remote authenticated users to bypass password protection and "deliver custom entryproperties settings to the Serendipity Frontend" via a certain request that modifies the password being checked.

    Published: 9 Aug 2007
    6.8
    Medium

    CVE-2007-3872

    Last Modified: 23 Apr 2026

    Multiple stack-based buffer overflows in the Shared Trace Service (OVTrace) service for HP OpenView Operations A.07.50 for Windows, and possibly earlier versions, allow remote attackers to execute arbitrary code via certain crafted requests.

    Published: 9 Aug 2007
    4.3
    Medium

    CVE-2007-4265

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in VisionProject 3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) projectIssueId parameter in EditProjectIssue.do, the (2) projectId parameter in ProjectSelected.do, the (3) folderId parameter in ProjectDocuments.do and the (4) sortField parameter in ProjectIssues.do.

    Published: 9 Aug 2007
    4.3
    Medium

    CVE-2007-4264

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in Kai Blankenhorn Bitfolge simple and nice index file (aka snif) 1.5.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) path and (2) download parameters.

    Published: 9 Aug 2007
    5
    Medium

    CVE-2007-4324

    Last Modified: 23 Apr 2026

    ActionScript 3 (AS3) in Adobe Flash Player 9.0.47.0, and other versions and other 9.0.124.0 and earlier versions, allows remote attackers to bypass the Security Sandbox Model, obtain sensitive information, and port scan arbitrary hosts via a Flash (SWF) movie that specifies a connection to make, then uses timing discrepancies from the SecurityErrorEvent error to determine whether a port is open or not. NOTE: 9.0.115.0 introduces support for a workaround, but does not fix the vulnerability.

    Published: 9 Aug 2007
    8.5
    High

    CVE-2007-4263

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the server side of the Secure Copy (SCP) implementation in Cisco 12.2-based IOS allows remote authenticated users to read, write or overwrite any file on the device's filesystem via unknown vectors.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4258

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in directory.php in Prozilla Pub Site Directory allows remote attackers to execute arbitrary SQL commands via the cat parameter.

    Published: 8 Aug 2007
    6.8
    Medium

    CVE-2007-4254

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in a certain ActiveX control in VDT70.DLL in Microsoft Visual Database Tools Database Designer 7.0 for Microsoft Visual Studio 6 allows remote attackers to execute arbitrary code via a long argument to the NotSafe method. NOTE: this may overlap CVE-2007-2885 or CVE-2005-2127.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4253

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the News module in modules.php in Envolution 1.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the topic parameter, a different vector than CVE-2005-4263.

    Published: 8 Aug 2007
    6.8
    Medium

    CVE-2007-4246

    Last Modified: 23 Apr 2026

    Unspecified vulnerability, possibly a buffer overflow, in Justsystem Ichitaro 2007 and earlier allows remote attackers to execute arbitrary code via a modified document, as actively exploited in August 2007 by malware such as Tarodrop.D (Tarodrop.Q), a different vulnerability than CVE-2006-4326, CVE-2006-5424, CVE-2006-6400, and CVE-2007-1938.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4261

    Last Modified: 23 Apr 2026

    EZPhotoSales 1.9.3 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download (1) a file containing cleartext passwords via a direct request for OnlineViewing/data/galleries.txt, or (2) a file containing username hashes and password hashes via a direct request for OnlineViewing/configuration/config.dat/. NOTE: vector 2 can be leveraged for administrative access because authentication does not require knowledge of cleartext values, but instead uses the username hash in the ConfigLogin parameter and the password hash in the ConfigPassword parameter.

    Published: 8 Aug 2007
    5
    Medium

    CVE-2007-4256

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in showpage.cgi in YNP Portal System 2.2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the p parameter.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4248

    Last Modified: 23 Apr 2026

    The CallCmd function in toolbar_gaming.dll in the Toolbar Gaming toolbar for Internet Explorer allows remote attackers to cause a denial of service (NULL dereference and browser crash) via unspecified vectors.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4244

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in langset.php in J! Reactions (com_jreactions) 1.8.1 and earlier, a Joomla! component, allows remote attackers to execute arbitrary PHP code via a URL in the comPath parameter.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4255

    Last Modified: 23 Apr 2026

    Buffer overflow in the mSQL extension in PHP 5.2.3 allows context-dependent attackers to execute arbitrary code via a long first argument to the msql_connect function.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4247

    Last Modified: 23 Apr 2026

    Windows Calendar on Microsoft Windows Vista allows remote attackers to cause a denial of service (NULL dereference and persistent application crash) via a malformed ICS file.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4249

    Last Modified: 23 Apr 2026

    The isChecked function in Toolbar.DLL in the ExportNation toolbar for Internet Explorer allows remote attackers to cause a denial of service (NULL dereference and browser crash) via unspecified vectors.

    Published: 8 Aug 2007
    5
    Medium

    CVE-2007-4250

    Last Modified: 23 Apr 2026

    The isChecked function in Toolbar.DLL in Advanced Searchbar before 3.33 allows remote attackers to cause a denial of service (NULL dereference and browser crash) via unspecified vectors.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4251

    Last Modified: 23 Apr 2026

    OpenOffice.org (OOo) 2.2 does not properly handle files with multiple extensions, which allows user-assisted remote attackers to cause a denial of service.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4252

    Last Modified: 23 Apr 2026

    Absolute path traversal vulnerability in a certain ActiveX control in CkString.dll 1.1 and earlier in CHILKAT ASP String allows remote attackers to create or overwrite arbitrary files via a full pathname in the first argument to the SaveToFile method, a different vulnerability than CVE-2007-3633.

    Published: 8 Aug 2007
    6.8
    Medium

    CVE-2007-4257

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in Live for Speed (LFS) S1 and S2 allow user-assisted remote attackers to execute arbitrary code via (1) a .spr file (single player replay file) containing a long user name or (2) a .ply file containing a long number plate string, different vectors than CVE-2007-4140.

    Published: 8 Aug 2007
    5
    Medium

    CVE-2007-4259

    Last Modified: 23 Apr 2026

    EZPhotoSales 1.9.3 and earlier allows remote attackers to download arbitrary image files via (1) a direct request for a URL under OnlineViewing/galleries/ or (2) navigation of the gallery user interface with JavaScript disabled.

    Published: 8 Aug 2007
    5
    Medium

    CVE-2007-4260

    Last Modified: 23 Apr 2026

    EZPhotoSales 1.9.3 and earlier has a default "admin" account for galleries, which allows remote attackers to access arbitrary galleries by specifying this username.

    Published: 8 Aug 2007
    8.5
    High

    CVE-2007-4262

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in EZPhotoSales 1.9.3 and earlier allows remote authenticated administrators to upload and execute arbitrary PHP code under OnlineViewing/galleries/.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4245

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Search.php in DiMeMa CONTENTdm (CDM) allows remote attackers to inject arbitrary web script or HTML via a search, probably related to the CISOBOX1 parameter to results.php in CDM 4.2.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4230

    Last Modified: 23 Apr 2026

    BellaBiblio allows remote attackers to gain administrative privileges via a bellabiblio cookie with the value "administrator." NOTE: this issue is disputed by CVE and multiple third parties because the cookie value must be an MD5 hash

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4227

    Last Modified: 23 Apr 2026

    Microsoft Windows Explorer (explorer.exe) allows user-assisted remote attackers to cause a denial of service via a certain JPG file, as demonstrated by something.jpg. NOTE: this issue might be related to CVE-2007-3958.

    Published: 8 Aug 2007
    10
    Critical

    CVE-2007-4241

    Last Modified: 23 Apr 2026

    Buffer overflow in ldcconn in Hewlett-Packard (HP) Controller for Cisco Local Director on HP-UX 11.11i allows remote attackers to execute arbitrary code via a long string to TCP port 17781.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4240

    Last Modified: 23 Apr 2026

    The check_logout function in class/auth.php in Help Center Live (hcl) 2.1.3a sends a redirect to the web browser but does not exit when administrative credentials are missing, which allows remote attackers to delete administrative users and have other unspecified impact via certain requests to (1) admin/departments.php, (2) admin/operators.php, and other unspecified scripts. NOTE: some of these details are obtained from third party information.

    Published: 8 Aug 2007
    6.8
    Medium

    CVE-2007-4232

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in admin/inc/change_action.php in Andreas Robertz PHPNews 0.93 allows remote attackers to execute arbitrary PHP code via a URL in the format_menue parameter.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4229

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in KDE Konqueror 3.5.7 and earlier allows remote attackers to cause a denial of service (failed assertion and application crash) via certain malformed HTML, as demonstrated by a document containing TEXTAREA, BUTTON, BR, BDO, PRE, FRAMESET, and A tags. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 8 Aug 2007
    4.7
    Medium

    CVE-2007-4228

    Last Modified: 23 Apr 2026

    rmpvc on IBM AIX 4.3 allows local users to cause a denial of service (system crash) via long port logical name (-l) argument.

    Published: 8 Aug 2007
    5
    Medium

    CVE-2007-4242

    Last Modified: 23 Apr 2026

    The pop3 Proxy in Astaro Security Gateway (ASG) 7 does not perform virus scanning of attachments that exceed the maximum attachment size, and passes these attachments, which allows remote attackers to bypass this scanning via a large attachment.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4239

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in user/forgotPassStep2.jsp in the admin interface in C-SAM oneWallet 210_07062007;1.0 allows remote attackers to inject arbitrary web script or HTML via the loginID parameter.

    Published: 8 Aug 2007
    6.8
    Medium

    CVE-2007-4231

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in order/login.php in IDevSpot PhpHostBot 1.06 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the svr_rootscript parameter, a different vector than CVE-2007-4094 and CVE-2006-3776.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4233

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in Camera Life before 2.6 allow attackers to cause a denial of service via unknown vectors.

    Published: 8 Aug 2007
    5
    Medium

    CVE-2007-4234

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Camera Life before 2.6 allows remote attackers to download private photos via unspecified vectors associated with the names of the photos. NOTE: some of these details are obtained from third party information.

    Published: 8 Aug 2007
    9.3
    Critical

    CVE-2007-4235

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in VietPHP allow remote attackers to execute arbitrary PHP code via a URL in (1) the dirpath parameter to (a) _functions.php, or (2) the language parameter to (b) admin/index.php or (c) index.php.

    Published: 8 Aug 2007
    6.9
    Medium

    CVE-2007-4236

    Last Modified: 23 Apr 2026

    Buffer overflow in lpd in bos.rte.printers in AIX 5.2 and 5.3 allows local users with printq group privileges to gain root privileges.

    Published: 8 Aug 2007
    6.9
    Medium

    CVE-2007-4237

    Last Modified: 23 Apr 2026

    Buffer overflow in the atm subset in arp in devices.common.IBM.atm.rte in AIX 5.2 and 5.3 allows local users to gain root privileges.

    Published: 8 Aug 2007
    6.9
    Medium

    CVE-2007-4238

    Last Modified: 23 Apr 2026

    AIX 5.2 and 5.3 install pioinit with user and group ownership of bin, which allows local users with bin or possibly printq privileges to gain root privileges by modifying pioinit.

    Published: 8 Aug 2007
    7.8
    High

    CVE-2007-4243

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in pfilter-reporter.pl in Astaro Security Gateway (ASG) 7 allows remote attackers to cause a denial of service (CPU consumption) via certain network traffic, as demonstrated by P2P and iTunes applications that download large amounts of data.

    Published: 8 Aug 2007
    7.1
    High

    CVE-2007-4226

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the BlueCat Networks Proteus IPAM appliance 2.0.2.0 (Adonis DNS/DHCP appliance 5.0.2.8) allows remote authenticated administrators, with certain TFTP privileges, to create and overwrite arbitrary files via a .. (dot dot) in a pathname. NOTE: this can be leveraged for administrative access by overwriting /etc/shadow.

    Published: 8 Aug 2007
    6.8
    Medium

    CVE-2007-4225

    Last Modified: 23 Apr 2026

    Visual truncation vulnerability in KDE Konqueror 3.5.7 allows remote attackers to spoof the URL address bar via an http URI with a large amount of whitespace in the user/password portion.

    Published: 8 Aug 2007