CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2007-4212

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in the Search Module in PHP-Nuke allow remote attackers to inject arbitrary web script or HTML via a trailing "<" instead of a ">" in (1) the onerror attribute of an IMG element, (2) the onload attribute of an IFRAME element, or (3) redirect users to other sites via the META tag.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4210

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in module.php in LANAI (la-nai) CMS 1.2.14 allow remote attackers to execute arbitrary SQL commands via (1) the mid parameter in an faqviewgroup action in the FAQ Modules, (2) the cid parameter in the EZSHOPINGCART Modules, or (3) the gid parameter in a view action in the GALLERY Modules.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4209

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in Recherche.php in Aceboard forum allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4208

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in default.asp in Next Gen Portfolio Manager allows remote attackers to execute arbitrary SQL commands via the (1) Users_Email or (2) Users_Password parameter in an ExecuteTheLogin action.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4207

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in admin_console/index.asp in Gallery In A Box allows remote attackers to execute arbitrary SQL commands via the (1) Username or (2) Password field. NOTE: these fields might be associated with the txtUsername and txtPassword parameters.

    Published: 8 Aug 2007
    4.4
    Medium

    CVE-2007-4206

    Last Modified: 23 Apr 2026

    Kaspersky Anti-Spam 3.0 MP1 before Critical Fix 2 (3.0.278.4) sets incorrect permissions for application files in certain upgrade scenarios, which might allow local users to gain privileges.

    Published: 8 Aug 2007
    7.1
    High

    CVE-2007-4205

    Last Modified: 23 Apr 2026

    XHA (Linux-HA) on the BlueCat Networks Adonis DNS/DHCP Appliance 5.0.2.8 allows remote attackers to cause a denial of service (heartbeat control process crash) via a UDP packet to port 694. NOTE: this may be the same as CVE-2006-3121.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-3384

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in examples/servlet/CookieExample in Apache Tomcat 3.3 through 3.3.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Name or (2) Value field, related to error messages.

    Published: 8 Aug 2007
    6.8
    Medium

    CVE-2007-4176

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in EQDKP Plus before 0.4.4.5 have unknown impact and attack vectors.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4178

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in WebDirector 2.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the deslocal parameter.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4177

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Interact before 2.4 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: this might overlap CVE-2007-3328.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4183

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in main.php in paBugs 2.0 Beta 3 and earlier allows remote attackers to execute arbitrary SQL commands via the cid parameter to index.php.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4184

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in administrator/popups/pollwindow.php in Joomla! 1.0.12 allows remote attackers to execute arbitrary SQL commands via the pollid parameter.

    Published: 8 Aug 2007
    5
    Medium

    CVE-2007-4185

    Last Modified: 23 Apr 2026

    Joomla! 1.0.12 allows remote attackers to obtain sensitive information via a direct request for (1) Stat.php (2) OutputFilter.php, (3) OutputCache.php, (4) Modifier.php, (5) Reader.php, and (6) TemplateCache.php in includes/patTemplate/patTemplate/; (7) includes/Cache/Lite/Output.php; and other unspecified components, which reveal the path in various error messages.

    Published: 8 Aug 2007
    6.8
    Medium

    CVE-2007-4186

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in admin.tour_toto.php in the Tour de France Pool (com_tour_toto) 1.0.1 module for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4190

    Last Modified: 23 Apr 2026

    CRLF injection vulnerability in Joomla! before 1.0.13 (aka Sunglow) allows remote attackers to inject arbitrary HTTP headers and probably conduct HTTP response splitting attacks via CRLF sequences in the url parameter. NOTE: this can be leveraged for cross-site scripting (XSS) attacks. NOTE: some of these details are obtained from third party information.

    Published: 8 Aug 2007
    6.9
    Medium

    CVE-2007-4191

    Last Modified: 23 Apr 2026

    Panda Antivirus 2008 stores service executables under the product's installation directory with weak permissions, which allows local users to obtain LocalSystem privileges by modifying PAVSRV51.EXE or other unspecified files, a related issue to CVE-2006-4657.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4193

    Last Modified: 23 Apr 2026

    Multiple cross-site request forgery (CSRF) vulnerabilities in index.php in IDE Group DVD Rental System (DRS) 5.1 before 20070801 allow remote attackers to perform certain actions as arbitrary users, as demonstrated by (1) modifying data or (2) canceling a subscription. NOTE: it is not clear whether IDE Group updates all DRS installations in its role as an application service provider. If so, then this issue should not be included in CVE.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4197

    Last Modified: 23 Apr 2026

    icat in Brian Carrier The Sleuth Kit (TSK) before 2.09 omits NULL pointer checks in certain code paths, which allows user-assisted remote attackers to cause a denial of service (NULL dereference and application crash) and prevent examination of certain NTFS files via a malformed NTFS image.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4198

    Last Modified: 23 Apr 2026

    The fs_data_put_str function in ntfs.c in fls in Brian Carrier The Sleuth Kit (TSK) before 2.09 does not validate a certain length value, which allows user-assisted remote attackers to cause a denial of service (application crash) and prevent examination of certain NTFS files via a malformed NTFS image, which triggers a buffer over-read.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4200

    Last Modified: 23 Apr 2026

    ntfs.c in fsstat in Brian Carrier The Sleuth Kit (TSK) before 2.09 interprets a certain variable as a byte count rather than a count of 32-bit integers, which allows user-assisted remote attackers to cause a denial of service (application crash) and prevent examination of certain NTFS files via a malformed NTFS image.

    Published: 8 Aug 2007
    5
    Medium

    CVE-2007-4201

    Last Modified: 23 Apr 2026

    Guidance Software EnCase 6.2 and 6.5 does not properly handle a volume with more than 25 partitions, which might allow remote attackers to prevent examination of certain data, a related issue to CVE-2007-4035.

    Published: 8 Aug 2007
    9.3
    Critical

    CVE-2007-3845

    Last Modified: 23 Apr 2026

    Mozilla Firefox before 2.0.0.6, Thunderbird before 1.5.0.13 and 2.x before 2.0.0.6, and SeaMonkey before 1.1.4 allow remote attackers to execute arbitrary commands via certain vectors associated with launching "a file handling program based on the file extension at the end of the URI," a variant of CVE-2007-4041. NOTE: the vendor states that "it is still possible to launch a filetype handler based on extension rather than the registered protocol handler."

    Published: 8 Aug 2007
    6.8
    Medium

    CVE-2007-4181

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in data/inc/theme.php in Pluck 4.3, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the dir parameter. NOTE: A reliable third party disputes this vulnerability because the applicable include is within a function that does not receive the dir parameter from an HTTP request

    Published: 8 Aug 2007
    9.3
    Critical

    CVE-2007-4188

    Last Modified: 23 Apr 2026

    Session fixation vulnerability in Joomla! before 1.0.13 (aka Sunglow) allows remote attackers to hijack administrative web sessions via unspecified vectors.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4199

    Last Modified: 23 Apr 2026

    Brian Carrier The Sleuth Kit (TSK) before 2.09 allows user-assisted remote attackers to cause a denial of service (application crash) and prevent examination of certain NTFS files via a malformed NTFS image that triggers (1) dereference of a certain integer value by ntfs_dent.c in fls, or (2) dereference of a certain other integer value by ntfs.c in fsstat.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4202

    Last Modified: 23 Apr 2026

    Guidance Software EnCase Enterprise Edition (EEE) 6 does not properly verify the identity of the acquisition target during communication with the EnCase Servlet (EEE servlet), which might allow remote attackers to spoof the disk image.

    Published: 8 Aug 2007
    9.3
    Critical

    CVE-2007-4203

    Last Modified: 23 Apr 2026

    Session fixation vulnerability in Mambo 4.6.2 CMS allows remote attackers to hijack web sessions by setting the Cookie parameter.

    Published: 8 Aug 2007
    5
    Medium

    CVE-2007-2927

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Atheros 802.11 a/b/g wireless adapter drivers before 5.3.0.35, and 6.x before 6.0.3.67, on Windows allows remote attackers to cause a denial of service via a crafted 802.11 management frame.

    Published: 8 Aug 2007
    5
    Medium

    CVE-2007-4180

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in data/inc/theme.php in Pluck 4.3, when register_globals is enabled, allows remote attackers to read arbitrary local files via a .. (dot dot) in the file parameter. NOTE: CVE and a reliable third party dispute this vulnerability because the code uses a fixed argument when invoking fputs, which cannot be used to read files

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4182

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in index.php in WikiWebWeaver 1.1 and earlier allows remote attackers to upload and execute arbitrary PHP code via an upload action specifying a filename with a double extension such as .gif.php, which is accessible from data/documents/.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4189

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.13 (aka Sunglow) allow remote attackers to inject arbitrary web script or HTML via unspecified vectors in the (1) com_search, (2) com_content, and (3) mod_login components. NOTE: some of these details are obtained from third party information.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4192

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in IDE Group DVD Rental System (DRS) 5.1 before 20070801 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: it is not clear whether IDE Group updates all DRS installations in its role as an application service provider. If so, then this issue should not be included in CVE.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4194

    Last Modified: 23 Apr 2026

    Guidance Software EnCase 5.0 allows user-assisted remote attackers to cause a denial of service (stack memory consumption) and possibly have other unspecified impact via a malformed file, related to "EnCase's file system parsing." NOTE: this information is based upon a vague pre-advisory. It might overlap CVE-2007-4036.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4196

    Last Modified: 23 Apr 2026

    icat in Brian Carrier The Sleuth Kit (TSK) before 2.09 misinterprets a certain memory location as the holder of a loop iteration count, which allows user-assisted remote attackers to cause a denial of service (long loop) and prevent examination of certain NTFS files via a malformed NTFS image.

    Published: 8 Aug 2007
    3.5
    Low

    CVE-2007-4204

    Last Modified: 23 Apr 2026

    Hitachi Groupmax Collaboration - Schedule, as used in Groupmax Collaboration Portal 07-32 through 07-32-/B, uCosminexus Collaboration Portal 06-32 through 06-32-/B, and Groupmax Collaboration Web Client - Mail/Schedule 07-32 through 07-32-/A, can assign schedule data to the wrong user under unspecified conditions, which might allow remote authenticated users to obtain sensitive information.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4175

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in OpenRat CMS 0.8-beta1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) subaction and (2) action parameters.

    Published: 8 Aug 2007
    1.5
    Low

    CVE-2007-4179

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Address and Routing Parameter Area (ARPA) transport functionality in HP-UX B.11.11 and B.11.23 allows local users to cause an unspecified denial of service via unknown vectors. NOTE: this is probably different from CVE-2007-0916, but this is not certain due to lack of vendor details.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4187

    Last Modified: 23 Apr 2026

    Multiple eval injection vulnerabilities in the com_search component in Joomla! 1.5 beta before RC1 (aka Mapya) allow remote attackers to execute arbitrary PHP code via PHP sequences in the searchword parameter, related to default_results.php in (1) components/com_search/views/search/tmpl/ and (2) templates/beez/html/com_search/search/.

    Published: 8 Aug 2007
    4.3
    Medium

    CVE-2007-4195

    Last Modified: 23 Apr 2026

    Use-after-free vulnerability in ext2fs.c in Brian Carrier The Sleuth Kit (TSK) before 2.09 allows user-assisted remote attackers to cause a denial of service (application crash) and prevent examination of certain ext2fs files via a malformed ext2fs image.

    Published: 8 Aug 2007
    4.9
    Medium

    CVE-2010-3066

    Last Modified: 11 Apr 2025

    The io_submit_one function in fs/aio.c in the Linux kernel before 2.6.23 allows local users to cause a denial of service (NULL pointer dereference) via a crafted io_submit system call with an IOCB_FLAG_RESFD flag.

    Published: 8 Aug 2007
    7.5
    High

    CVE-2007-4164

    Last Modified: 23 Apr 2026

    CRLF injection vulnerability in the redirect feature in Sun Java System Web Server 6.1 and 7.0 before 20070802, when the redirect Server Application Function (SAF) uses the url-prefix parameter and escape is disabled, or an Error directive uses the url-prefix parameter in obj.conf, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks.

    Published: 7 Aug 2007
    4.3
    Medium

    CVE-2007-4165

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in the Blue Memories theme 1.5 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter, possibly a related issue to CVE-2007-2757 and CVE-2007-4014. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 7 Aug 2007
    7.5
    High

    CVE-2007-4169

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in vgallite allow remote attackers to execute arbitrary PHP code via a URL in the (1) dirpath parameter to _functions.php or the (2) lang parameter to index.php. NOTE: CVE disputes vector 1 because the applicable include_once is located in a function that is not called on a direct request, and because $dirpath is an argument to this function. CVE disputes vector 2 because "lang" is a constant string within an include_once, not a variable. The researcher is also unreliable

    Published: 7 Aug 2007
    7.5
    High

    CVE-2007-4173

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in duyuruoku.asp in Hunkaray Okul Portali 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2007-3080.

    Published: 7 Aug 2007
    7.5
    High

    CVE-2007-4167

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in cat_viewed.php in AL-Caricatier 2.5 allows remote attackers to execute arbitrary PHP code via a URL in the CatName parameter.

    Published: 7 Aug 2007
    10
    Critical

    CVE-2007-4170

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in AL-Athkar 2.0 allow remote attackers to execute arbitrary PHP code via a URL in the (1) include parameter to (a) Main.php and (b) get.php and the (2) exec parameter to (c) count.php.

    Published: 7 Aug 2007
    7.5
    High

    CVE-2007-4171

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in komentar.php in the Forum Module for auraCMS (Modul Forum Sederhana) allows remote attackers to execute arbitrary SQL commands via the id parameter to the default URI. NOTE: some of these details are obtained from third party information.

    Published: 7 Aug 2007
    4.3
    Medium

    CVE-2007-4172

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Open Webmail (OWM) 2.52 20060831 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) searchtype, (2) longpage, and (3) page parameters to (a) openwebmail-main.pl; the (4) prefs_caller, (5) userfirsttime, (6) page, (7) sort, (8) folder, and (9) message_id parameters to (b) openwebmail-prefs.pl; the (10) compose_caller, (11) msgdatetype, (12) keyword, (13) searchtype, (14) folder, (15) page, and (16) sort parameters to (c) openwebmail-send.pl; the (17) folder, (18) page, and (19) sort parameters to (d) openwebmail-folder.pl; the (20) searchtype, (21) page, (22) filesort, (23) singlepage, (24) showhidden, (25) showthumbnail, and (26) message_id parameters to (e) openwebmail-webdisk.pl; the (27) folder parameter to (f) openwebmail-advsearch.pl; and the (28) abookcollapse, (29) abooksearchtype, (30) abooksort, (31) abooklongpage, (32) abookpage, (33) message_id, (34) searchtype, (35) msgdatetype, (36) sort, (37) page, (38) rootxowmuid, and (39) listviewmode parameters to (g) openwebmail-abook.pl, different vectors than CVE-2005-2863, CVE-2006-2190, CVE-2006-3229, and CVE-2006-3233.

    Published: 7 Aug 2007
    5.8
    Medium

    CVE-2007-4174

    Last Modified: 23 Apr 2026

    Tor before 0.1.2.16, when ControlPort is enabled, does not properly restrict commands to localhost port 9051, which allows remote attackers to modify the torrc configuration file, compromise anonymity, and have other unspecified impact via HTTP POST data containing commands without valid authentication, as demonstrated by an HTML form (1) hosted on a web site or (2) injected by a Tor exit node.

    Published: 7 Aug 2007