CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2007-2651

    Last Modified: 23 Apr 2026

    Multiple off-by-one errors in VooDoo cIRCle before 1.1.beta27 allow remote attackers to cause a denial of service (connection loss) or possibly execute arbitrary code via a (1) DNS name response of the exact length as a buffer; or a long (2) channel name, (3) partyline channel name, or unspecified vectors in crafted BOTNET packets.

    Published: 14 May 2007
    5
    Medium

    CVE-2007-0689

    Last Modified: 23 Apr 2026

    MyBB 1.2.4 allows remote attackers to obtain sensitive information via the (1) action[] parameter to member.php, (2) imagehash[] parameter to captcha.php, and (3) a direct request to inc/datahandlers/event.php, which reveal the installation path in the resulting error message.

    Published: 14 May 2007
    6.5
    Medium

    CVE-2007-2647

    Last Modified: 23 Apr 2026

    Static code injection vulnerability in admin/admin_configuration.php in Monalbum 0.8.7 allows remote authenticated users to inject arbitrary PHP code into the conf/config.inc.php file via the (1) gadm_pass, (2) gadm_user, (3) gcfgHote, (4) gcfgPass, (5) gcfgUser, (6) gclassement_rep, (7) gcontour, (8) gfond, (9) ggd_version, (10) ghome, (11) ghor, (12) gimg_copyright, (13) glangage, (14) gmenu_visible, (15) gmini_hasard, (16) gordre_rep, (17) gpage, (18) gracine, (19) grech_inactive, (20) grep_mini, (21) grepertoire, (22) gsite, (23) gslide, (24) gtitre, (25) guse_copyright, (26) gversion, (27) gvert, or (28) gcfgBase parameter.

    Published: 14 May 2007
    4.3
    Medium

    CVE-2007-2650

    Last Modified: 23 Apr 2026

    The OLE2 parser in Clam AntiVirus (ClamAV) allows remote attackers to cause a denial of service (resource consumption) via an OLE2 file with (1) a large property size or (2) a loop in the FAT file block chain that triggers an infinite loop, as demonstrated via a crafted DOC file.

    Published: 14 May 2007
    7.5
    High

    CVE-2007-2652

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in Free-SA before 1.2.2 allow remote attackers to execute arbitrary code via unspecified vectors involving certain (1) sprintf and (2) vsprintf calls in (a) r_index.c, (b) r_reports.c, (c) r_topsites.c, (d) r_topuser.c, (e) r_typical.c, (f) r_userdatetime.c, and (g) r_users.c in reports/; and (h) w_fs.c, (i) w_internal.c, and (j) w_log_operations.c in work/, probably related to buffer overflows. NOTE: some of these details are obtained from third party information.

    Published: 14 May 2007
    9.3
    Critical

    CVE-2007-0754

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in Apple QuickTime before 7.1.3 allows user-assisted remote attackers to execute arbitrary code via a crafted Sample Table Sample Descriptor (STSD) atom size in a QuickTime movie.

    Published: 14 May 2007
    4.3
    Medium

    CVE-2007-1901

    Last Modified: 23 Apr 2026

    SonicBB 1.0 allows remote attackers to obtain sensitive information via the (1) by[] parameter to search.php, (2) p[] parameter to viewforum.php, and the (3) id parameter to (a) viewforum.php or (b) members.php, which reveal the installation path in the resulting error message.

    Published: 14 May 2007
    6.8
    Medium

    CVE-2007-1902

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in SonicBB 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) part and (2) by parameters to (a) search.php, or the (2) id parameter to (b) viewforum.php.

    Published: 14 May 2007
    2.6
    Low

    CVE-2007-1903

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in search.php in SonicBB 1.0 allows remote attackers to inject arbitrary web script or HTML via the part parameter.

    Published: 14 May 2007
    7.2
    High

    CVE-2007-2444

    Last Modified: 23 Apr 2026

    Logic error in the SID/Name translation functionality in smbd in Samba 3.0.23d through 3.0.25pre2 allows local users to gain temporary privileges and execute SMB/CIFS protocol operations via unspecified vectors that cause the daemon to transition to the root user.

    Published: 14 May 2007
    7.8
    High

    CVE-2007-2649

    Last Modified: 23 Apr 2026

    Deutsche Telekom (T-com) Speedport W 700v uses JavaScript delays for invalid authentication attempts to the CGI script, which allows remote attackers to bypass the delays and conduct brute-force attacks via direct calls to the authentication CGI script.

    Published: 14 May 2007
    4
    Medium

    CVE-2006-7203

    Last Modified: 23 Apr 2026

    The compat_sys_mount function in fs/compat.c in Linux kernel 2.6.20 and earlier allows local users to cause a denial of service (NULL pointer dereference and oops) by mounting a smbfs file system in compatibility mode ("mount -t smbfs").

    Published: 14 May 2007
    10
    Critical

    CVE-2007-2446

    Last Modified: 23 Apr 2026

    Multiple heap-based buffer overflows in the NDR parsing in smbd in Samba 3.0.0 through 3.0.25rc3 allow remote attackers to execute arbitrary code via crafted MS-RPC requests involving (1) DFSEnum (netdfs_io_dfs_EnumInfo_d), (2) RFNPCNEX (smb_io_notify_option_type_data), (3) LsarAddPrivilegesToAccount (lsa_io_privilege_set), (4) NetSetFileSecurity (sec_io_acl), or (5) LsarLookupSids/LsarLookupSids2 (lsa_io_trans_names).

    Published: 14 May 2007
    6
    Medium

    CVE-2007-2447

    Last Modified: 23 Apr 2026

    The MS-RPC functionality in smbd in Samba 3.0.0 through 3.0.25rc3 allows remote attackers to execute arbitrary commands via shell metacharacters involving the (1) SamrChangePassword function, when the "username map script" smb.conf option is enabled, and allows remote authenticated users to execute commands via shell metacharacters involving other MS-RPC functions in the (2) remote printer and (3) file share management.

    Published: 14 May 2007
    9.3
    Critical

    CVE-2007-2645

    Last Modified: 23 Apr 2026

    Integer overflow in the exif_data_load_data_entry function in exif-data.c in libexif before 0.6.14 allows user-assisted remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via crafted EXIF data, involving the (1) doff or (2) s variable.

    Published: 14 May 2007
    7.5
    High

    CVE-2007-2631

    Last Modified: 23 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in SquirrelMail 1.4.8-4.fc6 and earlier allows remote attackers to perform unspecified actions as arbitrary users via unspecified vectors. NOTE: this issue might overlap CVE-2007-2589 or CVE-2002-1648.

    Published: 13 May 2007
    6.8
    Medium

    CVE-2007-2632

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in PHP Multi User Randomizer (phpMUR) 2006.09.13 allow remote attackers to inject arbitrary web script or HTML via (1) the edit_plugin parameter to configure_plugin.tpl.php, or (2) certain array parameters to web/phpinfo.php, as demonstrated by 1[] or a[].

    Published: 13 May 2007
    5
    Medium

    CVE-2007-2637

    Last Modified: 23 Apr 2026

    MoinMoin before 20070507 does not properly enforce ACLs for calendars and includes, which allows remote attackers to read certain pages via unspecified vectors.

    Published: 13 May 2007
    10
    Critical

    CVE-2007-2639

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in TFTPdWin 0.4.2 allows remote attackers to read or modify arbitrary files outside the TFTP root via unspecified vectors.

    Published: 13 May 2007
    7.8
    High

    CVE-2007-2640

    Last Modified: 23 Apr 2026

    LibTMCG before 1.1.1 does not perform a range check to avoid "trivial group generators," which allows attackers to obtain sensitive information about private cards.

    Published: 13 May 2007
    9.4
    Critical

    CVE-2007-2644

    Last Modified: 23 Apr 2026

    A certain ActiveX control in Morovia Barcode ActiveX Professional 3.3.1304 allows remote attackers to overwrite arbitrary files by calling the Save method with an arbitrary filename.

    Published: 13 May 2007
    6.8
    Medium

    CVE-2007-2634

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in common/errormsg.php in aForum 1.32 and possibly earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the header parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 13 May 2007
    10
    Critical

    CVE-2007-2638

    Last Modified: 23 Apr 2026

    eFileCabinet 3.3 allows remote attackers to bypass authentication and access restricted portions of the interface via an invalid filecabinetnumber, which can be leveraged to obtain sensitive information or create new data structures.

    Published: 13 May 2007
    7.8
    High

    CVE-2007-2642

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in galeria.php in R2K Gallery 1.7 allows remote attackers to read arbitrary files via a .. (dot dot) in the lang2 parameter.

    Published: 13 May 2007
    7.8
    High

    CVE-2007-2635

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Interchange before 5.4.2 allows remote attackers to cause an unspecified denial of service (possibly server hang) via crafted HTTP requests.

    Published: 13 May 2007
    6.8
    Medium

    CVE-2007-2636

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in phpTodo before 0.8.1 allows remote attackers to have an unknown impact via newlines in regular expressions to (1) index.php, (2) feed.php, (3) prefs.php, and (4) todolist.php; and (5) classTodoItem.php and (6) phpTodoUser.php in libs/. NOTE: some of these details are obtained from third party information.

    Published: 13 May 2007
    7.5
    High

    CVE-2007-2641

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in W1L3D4_bolum.asp in W1L3D4 Philboard 0.2 allows remote attackers to execute arbitrary SQL commands via the forumid parameter, a different vector than CVE-2007-0920.

    Published: 13 May 2007
    5
    Medium

    CVE-2007-2643

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in phpThumb.php in PinkCrow Designs Gallery or maGAZIn 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the src parameter.

    Published: 13 May 2007
    10
    Critical

    CVE-2007-2633

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in H-Sphere SiteStudio 1.6 allows remote attackers to read, or include and execute, arbitrary local files via a .. (dot dot) in the template parameter.

    Published: 13 May 2007
    10
    Critical

    CVE-2007-0748

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in Apple Darwin Streaming Proxy, when using Darwin Streaming Server before 5.5.5, allows remote attackers to execute arbitrary code via multiple trackID values in a SETUP RTSP request.

    Published: 13 May 2007
    10
    Critical

    CVE-2007-0749

    Last Modified: 23 Apr 2026

    Multiple stack-based buffer overflows in the is_command function in proxy.c in Apple Darwin Streaming Proxy, when using Darwin Streaming Server before 5.5.5, allow remote attackers to execute arbitrary code via a long (1) cmd or (2) server value in an RTSP request.

    Published: 13 May 2007
    6.8
    Medium

    CVE-2007-2624

    Last Modified: 23 Apr 2026

    Dynamic variable evaluation vulnerability in shared/config/cp_config.php in All In One Control Panel (AIOCP) before 1.3.016 allows remote attackers to conduct cross-site scripting (XSS) and possibly other attacks via the SERVER superglobal array. NOTE: some of these details are obtained from third party information.

    Published: 11 May 2007
    7.5
    High

    CVE-2007-2628

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in include/logout.php in Justin Koivisto SecurityAdmin for PHP (aka PHPSecurityAdmin, PSA) 4.0.2 allows remote attackers to execute arbitrary PHP code via a URL in the PSA_PATH parameter.

    Published: 11 May 2007
    7.8
    High

    CVE-2007-2629

    Last Modified: 23 Apr 2026

    Bradford CampusManager Network Control Application Server 3.1(6) allows remote attackers to obtain sensitive information (backup, log, and configuration files) via direct request for certain files in (1) /runTime/ or (2) /remediationReports/.

    Published: 11 May 2007
    6.5
    Medium

    CVE-2007-2630

    Last Modified: 23 Apr 2026

    Incomplete blacklist vulnerability in filemanager/browser/default/connectors/php/config.php in the FCKeditor module, as used in ActiveCampaign 1-2-All (aka 12All) 4.50 through 4.53.13, and possibly other products, allows remote authenticated administrators to upload and possibly execute .php4 and .php5 files via unspecified vectors. NOTE: this issue is reachable through filemanager/browser/default/browser.html.

    Published: 11 May 2007
    7.5
    High

    CVE-2007-2626

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in admin.php in SchoolBoard allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters. NOTE: CVE disputes this issue, because 'username' does not exist, and the password is not used in any queries

    Published: 11 May 2007
    6.8
    Medium

    CVE-2007-2627

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in sidebar.php in WordPress, when custom 404 pages that call get_sidebar are used, allows remote attackers to inject arbitrary web script or HTML via the query string (PHP_SELF), a different vulnerability than CVE-2007-1622.

    Published: 11 May 2007
    6.8
    Medium

    CVE-2007-2625

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in shared/code/cp_authorization.php in All In One Control Panel (AIOCP) before 1.3.016 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters. NOTE: some of these details are obtained from third party information.

    Published: 11 May 2007
    10
    Critical

    CVE-2007-2616

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the SSL version of the NMDMC.EXE service in Novell NetMail 3.52e FTF2 and probably earlier allows remote attackers to execute arbitrary code via a crafted request.

    Published: 11 May 2007
    7.5
    High

    CVE-2007-2620

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in inc/config.inc.php in Jakub Steiner (aka jimmac) original 0.11 allows remote attackers to execute arbitrary PHP code via a URL in the x[1] parameter.

    Published: 11 May 2007
    7.5
    High

    CVE-2007-2622

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in TaskDriver 1.2 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the username parameter to login.php or (2) the taskid parameter to notes.php.

    Published: 11 May 2007
    7.5
    High

    CVE-2007-2621

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in event_view.php in Thyme Calendar 1.3 allows remote attackers to execute arbitrary SQL commands via the eid parameter.

    Published: 11 May 2007
    5.1
    Medium

    CVE-2007-2618

    Last Modified: 23 Apr 2026

    CRLF injection vulnerability in index.php in Drake CMS 0.4.0 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the lang parameter. NOTE: Drake CMS has only a beta version available, and the vendor has previously stated "We do not consider security reports valid until the first official release of Drake CMS."

    Published: 11 May 2007
    4.6
    Medium

    CVE-2007-2619

    Last Modified: 23 Apr 2026

    Symantec pcAnywhere 11.5.x and 12.0.x retains unencrypted login credentials for the most recent login within process memory, which allows local administrators to obtain the credentials by reading process memory, a different vulnerability than CVE-2006-3785.

    Published: 11 May 2007
    7.8
    High

    CVE-2007-2623

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in RControl.dll in Remote Display Dev kit 1.2.1.0 allow remote attackers to cause a denial of service (Internet Explorer 7 crash) via (1) a long first argument to the connect function or (2) a long InternalServer property value, possibly involving ntdll.dll.

    Published: 11 May 2007
    2.1
    Low

    CVE-2007-2617

    Last Modified: 23 Apr 2026

    srsexec in Sun Remote Services (SRS) Net Connect Software Proxy Core package in Sun Solaris 10 does not enforce file permissions when opening files, which allows local users to read the first line of arbitrary files via the -d and -v options.

    Published: 11 May 2007
    10
    Critical

    CVE-2007-2598

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in print.php in SimpleNews 1.0.0 FINAL allows remote attackers to execute arbitrary SQL commands via the news_id parameter.

    Published: 11 May 2007
    6.8
    Medium

    CVE-2007-2600

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in TutorialCMS (aka Photoshop Tutorials) 1.00 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) catFile parameter to (a) browseCat.php or (b) browseSubCat.php; the (2) id parameter to (c) openTutorial.php, (d) topFrame.php, or (e) admin/editListing.php; or the (3) search parameter to search.php.

    Published: 11 May 2007
    9.3
    Critical

    CVE-2007-2601

    Last Modified: 23 Apr 2026

    Buffer overflow in a certain ActiveX control in the GDivX Zenith Player AviFixer class in fix.dll 1.0.0.1 allows remote attackers to execute arbitrary code via a long SetInputFile property value.

    Published: 11 May 2007
    7.1
    High

    CVE-2007-2605

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the GetPropertyById function in ISoftomateObj in SoftomateLib in BRUJULA4.NET.DLL in the Brujula Toolbar (Brujula.net toolbar) allows attackers to cause a denial of service (NULL dereference and browser crash) via certain arguments.

    Published: 11 May 2007