CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2007-2071

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Open-gorotto 2.0a 2006/02/08 edition, 2006/03/19 edition, and 2006/04/07 edition before 20070416 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) pub/modules/d/_top.html; (2) /pub/modules/a/_access.html; (3) _circletop.html or (4) _cir66.html in pub/modules/ci/; or (5) _fri66.html, (6) _inv66.html, (7) _top.html, (8) _friends.html, or (9) _fri33.html in pub/modules/f/.

    Published: 18 Apr 2007
    6.8
    Medium

    CVE-2007-2078

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in index.php in Maian Weblog 3.1 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter. NOTE: this issue was disputed by a third party researcher, since the path_to_folder variable is initialized before use

    Published: 18 Apr 2007
    9.3
    Critical

    CVE-2007-2079

    Last Modified: 23 Apr 2026

    The ADONewConnection Connect function in adodb.php in XAMPP 1.6.0a and earlier for Windows uses untrusted input for the database server hostname, which allows remote attackers to trigger a library buffer overflow and execute arbitrary code via a long host parameter, or have other unspecified impact. NOTE: it could be argued that this is an issue in mssql_connect (CVE-2007-1411.1) in PHP, or an issue in the ADOdb Library, and the proper fix should be in one of these products; if so, then this should not be treated as a vulnerability in XAMPP.

    Published: 18 Apr 2007
    10
    Critical

    CVE-2007-1674

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the Alert Service (aolnsrvr.exe) in LANDesk Management Suite 8.7 allows remote attackers to execute arbitrary code via a crafted packet to port 65535/UDP.

    Published: 18 Apr 2007
    5
    Medium

    CVE-2007-1869

    Last Modified: 23 Apr 2026

    lighttpd 1.4.12 and 1.4.13 allows remote attackers to cause a denial of service (cpu and resource consumption) by disconnecting while lighttpd is parsing CRLF sequences, which triggers an infinite loop and file descriptor consumption.

    Published: 18 Apr 2007
    7.8
    High

    CVE-2007-1870

    Last Modified: 23 Apr 2026

    lighttpd before 1.4.14 allows attackers to cause a denial of service (crash) via a request to a file whose mtime is 0, which results in a NULL pointer dereference.

    Published: 18 Apr 2007
    9.3
    Critical

    CVE-2007-1892

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Akamai Technologies Download Manager ActiveX Control (DownloadManagerV2.ocx) before 2.2.1.0 allows remote attackers to execute arbitrary code via unspecified vectors, a different issue than CVE-2007-1891.

    Published: 18 Apr 2007
    10
    Critical

    CVE-2007-2057

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in aircrack-ng airodump-ng 0.7 allows remote attackers to execute arbitrary code via crafted 802.11 authentication packets.

    Published: 18 Apr 2007
    6.8
    Medium

    CVE-2007-2058

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in Acubix PicoZip 4.02 allows user-assisted remote attackers to overwrite arbitrary files via a .. (dot dot) sequence in the file path in an (1) GZ, (2) TAR, (3) RAR, (4) JAR, or (5) ZIP archive.

    Published: 18 Apr 2007
    10
    Critical

    CVE-2007-2059

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in the ESA protocol implementation in eIQnetworks Enterprise Security Analyzer (ESA) 2.5 allow remote attackers to execute arbitrary code via a long parameter to the (1) DELETESEARCHFOLDER, (2) DELTASK, (3) HMGR_CHECKHOSTSCSV, (4) TASKUPDATEDUSER, (5) VERIFYUSERKEY, or (6) VERIFYPWD command.

    Published: 18 Apr 2007
    6.8
    Medium

    CVE-2007-2060

    Last Modified: 23 Apr 2026

    Cross-zone scripting vulnerability in the Wizz RSS Reader before 2.1.9 extension to Mozilla Firefox allows remote attackers to execute arbitrary Javascript in the browser chrome via the RSS feed DOM.

    Published: 18 Apr 2007
    2.1
    Low

    CVE-2007-1353

    Last Modified: 23 Apr 2026

    The setsockopt function in the L2CAP and HCI Bluetooth support in the Linux kernel before 2.4.34.3 allows context-dependent attackers to read kernel memory and obtain sensitive information via unspecified vectors involving the copy_from_user function accessing an uninitialized stack buffer.

    Published: 18 Apr 2007
    7.8
    High

    CVE-2007-2242

    Last Modified: 23 Apr 2026

    The IPv6 protocol allows remote attackers to cause a denial of service via crafted IPv6 type 0 route headers (IPV6_RTHDR_TYPE_0) that create network amplification between two routers.

    Published: 17 Apr 2007
    4.3
    Medium

    CVE-2009-0153

    Last Modified: 23 Apr 2026

    International Components for Unicode (ICU) 4.0, 3.6, and other 3.x versions, as used in Apple Mac OS X 10.5 before 10.5.7, iPhone OS 1.0 through 2.2.1, iPhone OS for iPod touch 1.1 through 2.2.1, Fedora 9 and 10, and possibly other operating systems, does not properly handle invalid byte sequences during Unicode conversion, which might allow remote attackers to conduct cross-site scripting (XSS) attacks.

    Published: 17 Apr 2007
    2.1
    Low

    CVE-2008-1294

    Last Modified: 23 Apr 2026

    Linux kernel 2.6.17, and other versions before 2.6.22, does not check when a user attempts to set RLIMIT_CPU to 0 until after the change is made, which allows local users to bypass intended resource limits.

    Published: 17 Apr 2007
    5
    Medium

    CVE-2007-2051

    Last Modified: 23 Apr 2026

    Buffer overflow in the parsecmd function in bftpd before 1.8 has unknown impact and attack vectors related to the confstr variable.

    Published: 16 Apr 2007
    5
    Medium

    CVE-2007-2050

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in header.php in RicarGBooK 1.2.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) a lang cookie or (2) the language parameter.

    Published: 16 Apr 2007
    6.8
    Medium

    CVE-2007-2049

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in the Calendar Module (com_calendar) 1.5.5 for Mambo allow remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter to (1) com_calendar.php or (2) mod_calendar.php.

    Published: 16 Apr 2007
    5
    Medium

    CVE-2007-2048

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in /console in the Management Console in webMethods Glue 6.5.1 and earlier allows remote attackers to read arbitrary system files via a .. (dot dot) in the resource parameter.

    Published: 16 Apr 2007
    7.5
    High

    CVE-2007-2047

    Last Modified: 23 Apr 2026

    CRLF injection vulnerability in www/delivery/ck.php in Openads 2.3 (aka Max Media Manager, MMM) before 0.3.31-alpha-pr3 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the destination parameter. NOTE: some of these details are obtained from third party information.

    Published: 16 Apr 2007
    5
    Medium

    CVE-2007-2045

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the IP implementation in Sun Solaris 8 and 9 allows remote attackers to cause a denial of service (CPU consumption) via crafted IP packets, probably related to fragmented packets with duplicate or missing fragments.

    Published: 16 Apr 2007
    7.5
    High

    CVE-2007-2046

    Last Modified: 23 Apr 2026

    Multiple CRLF injection vulnerabilities in adclick.php in (a) Openads (phpAdsNew) 2.0.11 and earlier and (b) Openads for PostgreSQL (phpPgAds) 2.0.11 and earlier allow remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in (1) the dest parameter and (2) the Referer HTTP header. NOTE: some of these details are obtained from third party information.

    Published: 16 Apr 2007
    6.8
    Medium

    CVE-2007-2042

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia Lite 1.0.6 and earlier module for Mambo allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to (1) support.html.php or (2) info.html.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 16 Apr 2007
    7.5
    High

    CVE-2007-2043

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in the Avant-Garde Solutions MOSMedia (com_mosmedia) 1.08 and earlier module for Mambo and Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to (1) media.tab.php or (2) media.divs.php.

    Published: 16 Apr 2007
    7.5
    High

    CVE-2007-2044

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in mod_weather.php in the Antonis Ventouris Weather module for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter.

    Published: 16 Apr 2007
    4
    Medium

    CVE-2007-2041

    Last Modified: 23 Apr 2026

    Cisco Wireless LAN Controller (WLC) before 4.0.206.0 saves the WLAN ACL configuration with an invalid checksum, which prevents WLAN ACLs from being loaded at boot time, and might allow remote attackers to bypass intended access restrictions, aka Bug ID CSCse58195.

    Published: 16 Apr 2007
    6.2
    Medium

    CVE-2007-2040

    Last Modified: 23 Apr 2026

    Cisco Aironet 1000 Series and 1500 Series Lightweight Access Points before 3.2.185.0, and 4.0.x before 4.0.206.0, have a hard-coded password, which allows attackers with physical access to perform arbitrary actions on the device, aka Bug ID CSCsg15192.

    Published: 16 Apr 2007
    2.9
    Low

    CVE-2007-2037

    Last Modified: 23 Apr 2026

    Cisco Wireless LAN Controller (WLC) before 3.2.116.21, and 4.0.x before 4.0.155.0, allows remote attackers on a local network to cause a denial of service (device crash) via malformed Ethernet traffic.

    Published: 16 Apr 2007
    10
    Critical

    CVE-2007-2036

    Last Modified: 23 Apr 2026

    The SNMP implementation in the Cisco Wireless LAN Controller (WLC) before 20070419 uses the default read-only community public, and the default read-write community private, which allows remote attackers to read and modify SNMP variables, aka Bug ID CSCse02384.

    Published: 16 Apr 2007
    7.8
    High

    CVE-2007-2035

    Last Modified: 23 Apr 2026

    Cisco Wireless Control System (WCS) before 4.0.66.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain network organization data via a direct request for files in certain directories, aka Bug ID CSCsg04301.

    Published: 16 Apr 2007
    9
    Critical

    CVE-2007-2034

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Cisco Wireless Control System (WCS) before 4.0.87.0 allows remote authenticated users to gain the privileges of the SuperUsers group, and manage the application and its networks, related to the group membership of user accounts, aka Bug ID CSCsg05190.

    Published: 16 Apr 2007
    6.5
    Medium

    CVE-2007-2033

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Cisco Wireless Control System (WCS) before 4.0.81.0 allows remote authenticated users to read any configuration page by changing the group membership of user accounts, aka Bug ID CSCse78596.

    Published: 16 Apr 2007
    7.5
    High

    CVE-2007-2032

    Last Modified: 23 Apr 2026

    Cisco Wireless Control System (WCS) before 4.0.96.0 has a hard-coded FTP username and password for backup operations, which allows remote attackers to read and modify arbitrary files via unspecified vectors related to "properties of the FTP server," aka Bug ID CSCse93014.

    Published: 16 Apr 2007
    7.5
    High

    CVE-2007-1997

    Last Modified: 23 Apr 2026

    Integer signedness error in the (1) cab_unstore and (2) cab_extract functions in libclamav/cab.c in Clam AntiVirus (ClamAV) before 0.90.2 allow remote attackers to execute arbitrary code via a crafted CHM file that contains a negative integer, which passes a signed comparison and leads to a stack-based buffer overflow.

    Published: 16 Apr 2007
    7.1
    High

    CVE-2007-1745

    Last Modified: 23 Apr 2026

    The chm_decompress_stream function in libclamav/chmunpack.c in Clam AntiVirus (ClamAV) before 0.90.2 leaks file descriptors, which has unknown impact and attack vectors involving a crafted CHM file, a different vulnerability than CVE-2007-0897. NOTE: some of these details are obtained from third party information.

    Published: 16 Apr 2007
    10
    Critical

    CVE-2007-2031

    Last Modified: 23 Apr 2026

    Buffer overflow in the HTTP proxy service for 3proxy 0.5 to 0.5.3g, and 0.6b-devel before 20070413, might allow remote attackers to execute arbitrary code via crafted transparent requests.

    Published: 16 Apr 2007
    6.1
    Medium

    CVE-2007-2038

    Last Modified: 23 Apr 2026

    The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.193.5, 4.0.x before 4.0.206.0, and 4.1.x allows remote attackers on a local wireless network to cause a denial of service (loss of packet forwarding) via (1) crafted SNAP packets, (2) malformed 802.11 traffic, or (3) packets with certain header length values, aka Bug ID CSCsg36361.

    Published: 16 Apr 2007
    6.1
    Medium

    CVE-2007-2039

    Last Modified: 23 Apr 2026

    The Network Processing Unit (NPU) in the Cisco Wireless LAN Controller (WLC) before 3.2.171.5, 4.0.x before 4.0.206.0, and 4.1.x allows remote attackers on a local wireless network to cause a denial of service (loss of packet forwarding) via (1) crafted SNAP packets, (2) malformed 802.11 traffic, or (3) packets with certain header length values, aka Bug IDs CSCsg15901 and CSCsh10841.

    Published: 16 Apr 2007
    6
    Medium

    CVE-2007-1354

    Last Modified: 23 Apr 2026

    The Access Control functionality (JMXOpsAccessControlFilter) in JMX Console in JBoss Application Server 4.0.2 and 4.0.5 before 20070416 uses a member variable to store the roles of the current user, which allows remote authenticated administrators to trigger a race condition and gain privileges by logging in during a session by a more privileged administrator, as demonstrated by privilege escalation from Read Mode to Write Mode.

    Published: 15 Apr 2007
    Unknown

    CVE-2007-3005

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-2789. Reason: This candidate is a duplicate of CVE-2007-2789. Notes: All CVE users should reference CVE-2007-2789 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 15 Apr 2007
    Unknown

    CVE-2007-3004

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-2788. Reason: This candidate is a duplicate of CVE-2007-2788. Notes: All CVE users should reference CVE-2007-2788 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 15 Apr 2007
    7.8
    High

    CVE-2007-2026

    Last Modified: 23 Apr 2026

    The gnu regular expression code in file 4.20 allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted document with a large number of line feed characters, which is not well handled by OS/2 REXX regular expressions that use wildcards, as originally reported for AMaViS.

    Published: 13 Apr 2007
    7.5
    High

    CVE-2007-2025

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in the UpLoad feature (lib/plugin/UpLoad.php) in PhpWiki 1.3.11p1 allows remote attackers to upload arbitrary PHP files with a double extension, as demonstrated by .php.3, which is interpreted by Apache as being a valid PHP file.

    Published: 13 Apr 2007
    6.8
    Medium

    CVE-2007-2024

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in the UpLoad feature (lib/plugin/UpLoad.php) in PhpWiki 1.3.x allows remote attackers to upload arbitrary PHP files with a (1) php3, (2) php4, or (3) php5 extension.

    Published: 13 Apr 2007
    6.8
    Medium

    CVE-2007-2022

    Last Modified: 23 Apr 2026

    Adobe Macromedia Flash Player 7 and 9, when used with Opera before 9.20 or Konqueror before 20070613, allows remote attackers to obtain sensitive information (browser keystrokes), which are leaked to the Flash Player applet.

    Published: 13 Apr 2007
    10
    Critical

    CVE-2007-1748

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the RPC interface in the Domain Name System (DNS) Server Service in Microsoft Windows 2000 Server SP 4, Server 2003 SP 1, and Server 2003 SP 2 allows remote attackers to execute arbitrary code via a long zone name containing character constants represented by escape sequences.

    Published: 13 Apr 2007
    7.2
    High

    CVE-2007-2023

    Last Modified: 23 Apr 2026

    USB20.dll in Secustick USB flash drive decouples the authorization and file access routines, which allows local users to bypass authentication requirements by altering the return value of the VerifyPassWord function.

    Published: 13 Apr 2007
    4.3
    Medium

    CVE-2007-1871

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in chcounter 3.1.3 allows remote attackers to inject arbitrary web script or HTML via the login_name parameter to /stats/.

    Published: 13 Apr 2007
    4.3
    Medium

    CVE-2007-1872

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in toendaCMS 1.5.3 allows remote attackers to inject arbitrary web script or HTML via the searchword parameter in a search id.

    Published: 13 Apr 2007
    4.3
    Medium

    CVE-2007-1873

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Mephisto 0.7.3 allows remote attackers to inject arbitrary web script or HTML via the q parameter to the search script.

    Published: 13 Apr 2007