CVE Feed

    Dashboard / CVE

    6.5
    Medium

    CVE-2007-2860

    Last Modified: 23 Apr 2026

    user.php in BoastMachine 3.0 platinum allows remote authenticated users to gain privileges via a modified id parameter, as demonstrated by an edit_post action.

    Published: 24 May 2007
    7.5
    High

    CVE-2007-2862

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in CubeCart 3.0.16 might allow remote attackers to execute arbitrary SQL commands via an unspecified parameter to cart.inc.php and certain other files in an include directory, related to missing sanitization of the $option variable and possibly cookie modification.

    Published: 24 May 2007
    10
    Critical

    CVE-2007-0448

    Last Modified: 23 Apr 2026

    The fopen function in PHP 5.2.0 does not properly handle invalid URI handlers, which allows context-dependent attackers to bypass safe_mode restrictions and read arbitrary files via a file path specified with an invalid URI, as demonstrated via the srpath URI.

    Published: 24 May 2007
    10
    Critical

    CVE-2007-2843

    Last Modified: 23 Apr 2026

    Cross-domain vulnerability in Apple Safari 2.0.4 allows remote attackers to access restricted information from other domains via Javascript, as demonstrated by a js script that accesses the location information of cross-domain web pages, probably involving setTimeout and timed events.

    Published: 24 May 2007
    9.3
    Critical

    CVE-2007-2847

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in hlstats.php in HLstats 1.35, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) authusername or (2) authpassword parameter, different vectors than CVE-2007-0840 and CVE-2007-2812.

    Published: 24 May 2007
    10
    Critical

    CVE-2007-2848

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the SetPath function in the shComboBox ActiveX control (shcmb80.ocx) in Sky Software Shell MegaPack ActiveX 8.0 allows remote attackers to execute arbitrary code via a long argument. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 24 May 2007
    10
    Critical

    CVE-2007-2849

    Last Modified: 23 Apr 2026

    KnowledgeTree Document Management (aka KnowledgeTree Open Source) before STABLE 3.3.7 does not require a password for an unregistered user, when the user exists in Active Directory, which allows remote attackers to log onto KTDMS without the intended authorization check.

    Published: 24 May 2007
    10
    Critical

    CVE-2007-2850

    Last Modified: 23 Apr 2026

    The Session Reliability Service (XTE) in Citrix MetaFrame Presentation Server 3.0, Presentation Server 4.0, and Access Essentials 1.0 and 1.5, allows remote attackers to bypass network security policies and connect to arbitrary TCP ports via a modified address:port string.

    Published: 24 May 2007
    7.5
    High

    CVE-2007-2851

    Last Modified: 23 Apr 2026

    A certain ActiveX control in LeadTools Raster Variant Object Library (LTRVR14e.dll) 14.5.0.44 allows remote attackers to overwrite arbitrary files via the WriteDataToFile method.

    Published: 24 May 2007
    9.3
    Critical

    CVE-2007-2844

    Last Modified: 23 Apr 2026

    PHP 4.x and 5.x before 5.2.1, when running on multi-threaded systems, does not ensure thread safety for libc crypt function calls using protection schemes such as a mutex, which creates race conditions that allow remote attackers to overwrite internal program memory and gain system access.

    Published: 24 May 2007
    9.3
    Critical

    CVE-2007-2846

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the SIS unpacker in avast! Anti-Virus Managed Client before 4.7.700 allows user-assisted remote attackers to execute arbitrary code via a crafted SIS archive, resulting from an "integer cast around."

    Published: 24 May 2007
    9.3
    Critical

    CVE-2007-2845

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the CAB unpacker in avast! Anti-Virus Managed Client before 4.7.700 allows user-assisted remote attackers to execute arbitrary code via a crafted CAB archive, resulting from an "integer cast around".

    Published: 24 May 2007
    5
    Medium

    CVE-2007-2830

    Last Modified: 23 Apr 2026

    The ath_beacon_config function in if_ath.c in MadWifi before 0.9.3.1 allows remote attackers to cause a denial of service (system crash) via crafted beacon interval information when scanning for access points, which triggers a divide-by-zero error.

    Published: 24 May 2007
    4.3
    Medium

    CVE-2007-2832

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the web application firewall in Cisco CallManager before 3.3(5)sr3, 4.1 before 4.1(3)sr5, 4.2 before 4.2(3)sr2, and 4.3 before 4.3(1)sr1 allows remote attackers to inject arbitrary web script or HTML via the pattern parameter to CCMAdmin/serverlist.asp (aka the search-form) and possibly other unspecified vectors.

    Published: 24 May 2007
    10
    Critical

    CVE-2007-2687

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the MicroWorld Agent service (MWAGENT.EXE) in MicroWorld Technologies eScan before 9.0.718.1 allows remote attackers to execute arbitrary code via a long command.

    Published: 24 May 2007
    5
    Medium

    CVE-2007-2829

    Last Modified: 23 Apr 2026

    The 802.11 network stack in net80211/ieee80211_input.c in MadWifi before 0.9.3.1 allows remote attackers to cause a denial of service (system hang) via a crafted length field in nested 802.3 Ethernet frames in Fast Frame packets, which results in a NULL pointer dereference.

    Published: 24 May 2007
    10
    Critical

    CVE-2007-2831

    Last Modified: 23 Apr 2026

    Array index error in the (1) ieee80211_ioctl_getwmmparams and (2) ieee80211_ioctl_setwmmparams functions in net80211/ieee80211_wireless.c in MadWifi before 0.9.3.1 allows local users to cause a denial of service (system crash), possibly obtain kernel memory contents, and possibly execute arbitrary code via a large negative array index value.

    Published: 24 May 2007
    5
    Medium

    CVE-2006-7205

    Last Modified: 23 Apr 2026

    The array_fill function in ext/standard/array.c in PHP 4.4.2 and 5.1.2 allows context-dependent attackers to cause a denial of service (memory consumption) via a large num value.

    Published: 24 May 2007
    5.1
    Medium

    CVE-2007-2799

    Last Modified: 23 Apr 2026

    Integer overflow in the "file" program 4.20, when running on 32-bit systems, as used in products including The Sleuth Kit, might allow user-assisted attackers to execute arbitrary code via a large file that triggers an overflow that bypasses an assert() statement. NOTE: this issue is due to an incorrect patch for CVE-2007-1536.

    Published: 23 May 2007
    7.5
    High

    CVE-2007-2816

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in ol'bookmarks 0.7.4 allow remote attackers to execute arbitrary PHP code via a URL in the root parameter to (1) test1.php, (2) blackorange.php, (3) default.php, (4) frames1.php, (5) frames1_top.php, (7) test2.php, (8) test3.php, (9) test4.php, (10) test5.php, (11) test6.php, (12) frames1_left.php, and (13) frames1_center.php in themes/.

    Published: 22 May 2007
    7.5
    High

    CVE-2007-2817

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in read/index.php in ol'bookmarks 0.7.4 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 22 May 2007
    4.3
    Medium

    CVE-2007-2818

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in cand_login.asp in CactuSoft Parodia 6.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the strJobIDs parameter.

    Published: 22 May 2007
    9.3
    Critical

    CVE-2007-2822

    Last Modified: 23 Apr 2026

    TutorialCMS 1.01 and earlier, when register_globals is enabled, allows remote attackers to bypass authentication via the (1) loggedIn and (2) activated parameters to (a) login.php, (b) headerLinks.php, (c) submit1.php, (d) myFav.php, and (e) userCP.php.

    Published: 22 May 2007
    10
    Critical

    CVE-2007-2824

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in paypal.php in AlstraSoft E-Friends 4.21 and earlier allows remote attackers to execute arbitrary SQL commands via the pack parameter in a paypal action for index.php.

    Published: 22 May 2007
    4.3
    Medium

    CVE-2007-2825

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in ReadMsg.php in @Mail 5.02 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified vectors involving (1) links and (2) images.

    Published: 22 May 2007
    7.5
    High

    CVE-2007-2826

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in lib/addressbook.php in Madirish Webmail 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[basedir] parameter.

    Published: 22 May 2007
    9.3
    Critical

    CVE-2007-2827

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in LEAD Technologies LEADTOOLS ISIS ActiveX Control (ltisi14E.ocx) 14.5.0.44 and earlier allows remote attackers to execute arbitrary code via a long DriverName property.

    Published: 22 May 2007
    7.5
    High

    CVE-2007-2820

    Last Modified: 23 Apr 2026

    Multiple stack-based buffer overflows in the KSign KSignSWAT ActiveX Control (AxKSignSWAT.dll) 2.0.3.3 allow remote attackers to execute arbitrary code via long arguments to the (1) SWAT_Init, (2) SWAT_InitEx, (3) SWAT_InitEx2, (4) SWAT_InitEx3, and (5) SWAT_Login functions.

    Published: 22 May 2007
    7.5
    High

    CVE-2007-2821

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in wp-admin/admin-ajax.php in WordPress before 2.2 allows remote attackers to execute arbitrary SQL commands via the cookie parameter.

    Published: 22 May 2007
    6
    Medium

    CVE-2007-2828

    Last Modified: 23 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in adsense-deluxe.php in the AdSense-Deluxe 0.x plugin for WordPress allows remote attackers to perform unspecified actions as arbitrary users via unspecified vectors.

    Published: 22 May 2007
    4.3
    Medium

    CVE-2007-2819

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in reportItem.do in Track+ 3.3.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the projId parameter.

    Published: 22 May 2007
    6.8
    Medium

    CVE-2007-2823

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in HT Editor before 2.0.6 might allow remote attackers to execute arbitrary code via unspecified vectors, possibly involving the editor display width. NOTE: some of the details were obtained from third party information.

    Published: 22 May 2007
    5
    Medium

    CVE-2006-3894

    Last Modified: 23 Apr 2026

    The RSA Crypto-C before 6.3.1 and Cert-C before 2.8 libraries, as used by RSA BSAFE, multiple Cisco products, and other products, allows remote attackers to cause a denial of service via malformed ASN.1 objects.

    Published: 22 May 2007
    2.1
    Low

    CVE-2006-7204

    Last Modified: 23 Apr 2026

    The imap_body function in PHP before 4.4.4 does not implement safemode or open_basedir checks, which allows local users to read arbitrary files or list arbitrary directory contents.

    Published: 22 May 2007
    5.8
    Medium

    CVE-2007-2806

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in GaliX 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) galix_cat_detail, (2) galix_gal_detail, and (3) galix_cat_detail_sort parameters.

    Published: 22 May 2007
    6.8
    Medium

    CVE-2007-2807

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in mod/server.mod/servrmsg.c in Eggdrop 1.6.18, and possibly earlier, allows user-assisted, remote IRC servers to execute arbitrary code via a long private message.

    Published: 22 May 2007
    4.3
    Medium

    CVE-2007-2808

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in gnatsweb.pl in Gnatsweb 4.00 and Gnats 4.1.99 allows remote attackers to inject arbitrary web script or HTML via the database parameter.

    Published: 22 May 2007
    9.3
    Critical

    CVE-2007-2809

    Last Modified: 23 Apr 2026

    Buffer overflow in the transfer manager in Opera before 9.21 for Windows allows user-assisted remote attackers to execute arbitrary code via a crafted torrent file. NOTE: due to the lack of details, it is not clear if this is the same issue as CVE-2007-2274.

    Published: 22 May 2007
    10
    Critical

    CVE-2007-2815

    Last Modified: 23 Apr 2026

    The "hit-highlighting" functionality in webhits.dll in Microsoft Internet Information Services (IIS) Web Server 5.0 only uses Windows NT ACL configuration, which allows remote attackers to bypass NTLM and basic authentication mechanisms and access private web directories via the CiWebhitsfile parameter to null.htw.

    Published: 22 May 2007
    4.3
    Medium

    CVE-2007-2686

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in Jetbox CMS 2.1 allows remote attackers to inject arbitrary web script or HTML via the login parameter in a sendpwd task.

    Published: 22 May 2007
    4.3
    Medium

    CVE-2007-2804

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in scripts/prodList.asp in CandyPress Store 3.5.2.14 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) brand and (2) Msg parameters.

    Published: 22 May 2007
    4.3
    Medium

    CVE-2007-2812

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in hlstats.php in HLstats 1.35, and possibly earlier, allows remote attackers to inject arbitrary web script or HTML via (1) the PATH_INFO or (2) the action parameter.

    Published: 22 May 2007
    7.8
    High

    CVE-2007-2813

    Last Modified: 23 Apr 2026

    Cisco IOS 12.4 and earlier, when using the crypto packages and SSL support is enabled, allows remote attackers to cause a denial of service via a malformed (1) ClientHello, (2) ChangeCipherSpec, or (3) Finished message during an SSL session.

    Published: 22 May 2007
    4.3
    Medium

    CVE-2007-2802

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in cp/ps/Main/login/Login in RM EasyMail Plus allows remote attackers to inject arbitrary web script or HTML via the d parameter.

    Published: 22 May 2007
    6.8
    Medium

    CVE-2007-2519

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the installer in PEAR 1.0 through 1.5.3 allows user-assisted remote attackers to overwrite arbitrary files via a .. (dot dot) sequence in the (1) install-as attribute in the file element in package.xml 1.0 or the (2) as attribute in the install element in package.xml 2.0. NOTE: it could be argued that this does not cross privilege boundaries in typical installations, since the code being installed could perform the same actions.

    Published: 22 May 2007
    4.3
    Medium

    CVE-2007-2805

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in ClientExec (CE) 3.0 beta2, and possibly other versions, allow remote attackers to inject arbitrary web script or HTML via the (1) ticketID, (2) view, and (3) fuse parameters.

    Published: 22 May 2007
    10
    Critical

    CVE-2007-2810

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in down_indir.asp in Gazi Download Portal allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 22 May 2007
    7.5
    High

    CVE-2007-2814

    Last Modified: 23 Apr 2026

    Multiple stack-based buffer overflows in the Pegasus ImagN' ActiveX control (IMW32O40.OCX) 4.00.041 allow remote attackers to execute arbitrary code via (1) a long FileName parameter, or unspecified vectors involving the (2) BeginReport, (3) CreatePictureExA, (4) DefineImage, (5) DefineImageEx, (6) DefineImageFox, (7) CopyBufToClipExA, (8) LoadEx, (9) LoadFox, and other functions.

    Published: 22 May 2007
    7.5
    High

    CVE-2007-2803

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in default.asp in Vizayn Urun Tanitim Sitesi 0.2 allows remote attackers to execute arbitrary SQL commands via the id parameter in a haberdetay action.

    Published: 22 May 2007
    4.3
    Medium

    CVE-2007-2811

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in OSK Advance-Flow 4.41 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 22 May 2007