CVE Feed

    Dashboard / CVE

    9
    Critical

    CVE-2007-1003

    Last Modified: 23 Apr 2026

    Integer overflow in ALLOCATE_LOCAL in the ProcXCMiscGetXIDList function in the XC-MISC extension in the X.Org X11 server (xserver) 7.1-1.1.0, and other versions before 20070403, allows remote authenticated users to execute arbitrary code via a large expression, which results in memory corruption.

    Published: 3 Apr 2007
    9
    Critical

    CVE-2007-1216

    Last Modified: 23 Apr 2026

    Double free vulnerability in the GSS-API library (lib/gssapi/krb5/k5unseal.c), as used by the Kerberos administration daemon (kadmind) in MIT krb5 before 1.6.1, when used with the authentication method provided by the RPCSEC_GSS RPC library, allows remote authenticated users to execute arbitrary code and modify the Kerberos key database via a message with an "an invalid direction encoding".

    Published: 3 Apr 2007
    8.5
    High

    CVE-2007-1351

    Last Modified: 23 Apr 2026

    Integer overflow in the bdfReadCharacters function in bdfread.c in (1) X.Org libXfont before 20070403 and (2) freetype 2.3.2 and earlier allows remote authenticated users to execute arbitrary code via crafted BDF fonts, which result in a heap overflow.

    Published: 3 Apr 2007
    3.8
    Low

    CVE-2007-1352

    Last Modified: 23 Apr 2026

    Integer overflow in the FontFileInitTable function in X.Org libXfont before 20070403 allows remote authenticated users to execute arbitrary code via a long first line in the fonts.dir file, which results in a heap overflow.

    Published: 3 Apr 2007
    4.3
    Medium

    CVE-2007-1830

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Username Hijacking Patch 20070312 for web-app.org WebAPP 0.9.9.6 allows remote attackers to obtain administrative access via unknown vectors, related to "something overlooked in the original that was still overlooked in the patch", and possibly related to copying files to the user-lib and the "XSS and cookies exploit."

    Published: 3 Apr 2007
    9
    Critical

    CVE-2007-1836

    Last Modified: 23 Apr 2026

    The command line administration interface in Data Domain OS before 4.0.3.6 allows remote authenticated users to execute arbitrary commands via shell metacharacters in certain arguments to various commands, as demonstrated by the interface argument to the (1) ifconfig and (2) ping commands.

    Published: 3 Apr 2007
    6
    Medium

    CVE-2007-1827

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in form input validation in web-app.org WebAPP before 0.9.9.6 allow remote authenticated users to corrupt data files, gain access to private files, and execute arbitrary code via "certain characters."

    Published: 3 Apr 2007
    3.5
    Low

    CVE-2007-1828

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in web-app.org WebAPP before 0.9.9.6 allow remote authenticated users to inject arbitrary web script or HTML via (1) the QUERY_STRING corresponding to drop downs or (2) various forms.

    Published: 3 Apr 2007
    7.5
    High

    CVE-2007-1829

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in web-app.net WebAPP have unknown impact and attack vectors, described as "[having] other [security] issues too, not as bad as letting users take over your admin account, but bad too."

    Published: 3 Apr 2007
    6
    Medium

    CVE-2007-1831

    Last Modified: 23 Apr 2026

    web-app.org WebAPP before 0.9.9.6 allows remote authenticated users to open files and write "wrong data" via a crafted QUERY_STRING.

    Published: 3 Apr 2007
    5
    Medium

    CVE-2007-1832

    Last Modified: 23 Apr 2026

    web-app.org WebAPP before 0.9.9.6 allows remote authenticated users to upload certain files (1) via a crafted filename or (2) by "using percent encoding in forms."

    Published: 3 Apr 2007
    4.6
    Medium

    CVE-2007-1835

    Last Modified: 23 Apr 2026

    PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an empty session save path (session.save_path), uses the TMPDIR default after checking the restrictions, which allows local users to bypass open_basedir restrictions.

    Published: 3 Apr 2007
    7.5
    High

    CVE-2007-1837

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in MangoBery CMS 0.5.5 allow remote attackers to execute arbitrary PHP code via a URL in the Site_Path parameter to (1) boxes/quotes.php or (2) templates/mangobery/footer.sample.php.

    Published: 3 Apr 2007
    7.5
    High

    CVE-2007-1838

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in view.php in the Friendfinder 3.3 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 3 Apr 2007
    7.5
    High

    CVE-2007-1839

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in CodeBB 1.1b3 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter to (1) pass_code.php or (2) lang_select.

    Published: 3 Apr 2007
    4.3
    Medium

    CVE-2007-1840

    Last Modified: 23 Apr 2026

    lib/modules.inc in LDAP Account Manager (LAM) before 1.3.0 does not escape HTML special characters in LDAP data, which allows remote attackers to have an unknown impact, probably cross-site scripting (XSS).

    Published: 3 Apr 2007
    7.5
    High

    CVE-2007-1800

    Last Modified: 23 Apr 2026

    Cisco Secure ACS does not require authentication when Cisco Trust Agent (CTA) transmits posture information, which might allow remote attackers to gain network access via a spoofed Network Endpoint Assessment posture, aka "NACATTACK." NOTE: this attack might be limited to authenticated users and devices.

    Published: 2 Apr 2007
    7.8
    High

    CVE-2007-1804

    Last Modified: 23 Apr 2026

    PulseAudio 0.9.5 allows remote attackers to cause a denial of service (daemon crash) via (1) a PA_PSTREAM_DESCRIPTOR_LENGTH value of FRAME_SIZE_MAX_ALLOW sent on TCP port 9875, which triggers a p->export assertion failure in do_read; (2) a PA_PSTREAM_DESCRIPTOR_LENGTH value of 0 sent on TCP port 9875, which triggers a length assertion failure in pa_memblock_new; or (3) an empty packet on UDP port 9875, which triggers a t assertion failure in pa_sdp_parse; and allows remote authenticated users to cause a denial of service (daemon crash) via a crafted packet on TCP port 9875 that (4) triggers a maxlength assertion failure in pa_memblockq_new, (5) triggers a size assertion failure in pa_xmalloc, or (6) plays a certain sound file.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1809

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in GraFX Company WebSite Builder (CWB) PRO 1.5 allow remote attackers to execute arbitrary PHP code via a URL in the INCLUDE_PATH parameter to (1) cls_headline_prod.php, (2) cls_listorders.php, or (3) cls_viewpastorders.php in include/, different vectors than CVE-2007-1513.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1810

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in product_details.php in the Kshop 1.17 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1818

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in MOD_forum_fields_parse.php in the Forum picture and META tags 1.7 module for phpBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.

    Published: 2 Apr 2007
    9.3
    Critical

    CVE-2007-1819

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the SPIDERLib.Loader ActiveX control (Spider90.ocx) 9.1.0.4353 in TestDirector (TD) for Mercury Quality Center 9.0 before Patch 12.1, and 8.2 SP1 before Patch 32, allows remote attackers to execute arbitrary code via a long ProgColor property.

    Published: 2 Apr 2007
    7.8
    High

    CVE-2007-1826

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the IPSec Manager Service for Cisco Unified CallManager (CUCM) 5.0 before 5.0(4a)SU1 and Cisco Unified Presence Server (CUPS) 1.0 before 1.0(3) allows remote attackers to cause a denial of service (loss of cluster services) via a "specific UDP packet" to UDP port 8500, aka bug ID CSCsg60949.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1807

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in modules/myalbum/viewcat.php in the myAlbum-P 2.0 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1808

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in show.php in the Camportail 1.1 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the camid parameter in a showcam action.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1801

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in inc/lang.php in sBLOG 0.7.3 Beta allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the conf_lang_default parameter, as demonstrated by injecting PHP sequences into an Apache HTTP Server log file, which is then included by inc/lang.php.

    Published: 2 Apr 2007
    6.8
    Medium

    CVE-2007-1802

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in MailDwarf 3.01 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 2 Apr 2007
    5
    Medium

    CVE-2007-1803

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in MailDwarf 3.01 and earlier allows remote attackers to send e-mail to addresses different from the configured addresses.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1805

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in genre.php in the debaser 0.92 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the genreid parameter.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1806

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in categos.php in the RM+Soft Gallery (rmgallery) 1.0 module for Xoops allows remote attackers to execute arbitrary SQL commands via the idcat parameter.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1811

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in the Tiny Event (tinyevent) 1.01 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the id parameter in a show action.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1812

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in utilitaires/gestion_sondage.php in BT-Sondage 112 allows remote attackers to execute arbitrary PHP code via a URL in the repertoire_visiteur parameter.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1813

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in display.php in the eCal 2.24 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the katid parameter.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1814

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in viewcat.php in the Core module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter, a different vector than CVE-2007-0377.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1815

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in viewcat.php in the Library module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1816

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in viewcat.php in the Tutoriais module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter.

    Published: 2 Apr 2007
    7.5
    High

    CVE-2007-1817

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in the Lykos Reviews (lykos_reviews) 1.00 module for Xoops allows remote attackers to execute arbitrary SQL commands via the uid parameter in a u action.

    Published: 2 Apr 2007
    9.3
    Critical

    CVE-2007-1820

    Last Modified: 23 Apr 2026

    Nortel Networks CallPilot and Meridian Mail voicemail systems, when a mailbox has auto logon enabled, allow remote attackers to retrieve or remove messages, or reconfigure the mailbox, by spoofing Calling Number Identification (CNID, aka Caller ID).

    Published: 2 Apr 2007
    10
    Critical

    CVE-2007-1821

    Last Modified: 23 Apr 2026

    Sprint Nextel Sprint voice mail systems allow remote attackers to retrieve or remove messages, or reconfigure mailboxes, by spoofing Calling Number Identification (CNID, aka Caller ID).

    Published: 2 Apr 2007
    10
    Critical

    CVE-2007-1822

    Last Modified: 23 Apr 2026

    Alcatel-Lucent Lucent Technologies voice mail systems allow remote attackers to retrieve or remove messages, or reconfigure mailboxes, by spoofing Calling Number Identification (CNID, aka Caller ID).

    Published: 2 Apr 2007
    10
    Critical

    CVE-2007-1823

    Last Modified: 23 Apr 2026

    T-Mobile voice mail systems allow remote attackers to retrieve or remove messages, or reconfigure mailboxes, by spoofing Calling Number Identification (CNID, aka Caller ID).

    Published: 2 Apr 2007
    5.1
    Medium

    CVE-2007-1824

    Last Modified: 23 Apr 2026

    Buffer overflow in the php_stream_filter_create function in PHP 5 before 5.2.1 allows remote attackers to cause a denial of service (application crash) via a php://filter/ URL that has a name ending in the '.' character.

    Published: 2 Apr 2007
    9.3
    Critical

    CVE-2006-5820

    Last Modified: 23 Apr 2026

    The LinkSBIcons method in the SuperBuddy ActiveX control (Sb.SuperBuddy.1) in America Online 9.0 Security Edition dereferences an arbitrary function pointer, which allows remote attackers to execute arbitrary code via a modified pointer value.

    Published: 2 Apr 2007
    6.4
    Medium

    CVE-2007-1799

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in torrent.cpp in KTorrent before 2.1.3 only checks for the ".." string, which allows remote attackers to overwrite arbitrary files via modified ".." sequences in a torrent filename, as demonstrated by "../" sequences, due to an incomplete fix for CVE-2007-1384.

    Published: 2 Apr 2007
    4.9
    Medium

    CVE-2007-1793

    Last Modified: 23 Apr 2026

    SPBBCDrv.sys in Symantec Norton Personal Firewall 2006 9.1.0.33 and 9.1.1.7 does not validate certain arguments before being passed to hooked SSDT function handlers, which allows local users to cause a denial of service (crash) or possibly execute arbitrary code via crafted arguments to the (1) NtCreateMutant and (2) NtOpenEvent functions. NOTE: it was later reported that Norton Internet Security 2008 15.0.0.60, and possibly other versions back to 2006, are also affected.

    Published: 2 Apr 2007
    10
    Critical

    CVE-2007-1794

    Last Modified: 23 Apr 2026

    The Javascript engine in Mozilla 1.7 and earlier on Sun Solaris 8, 9, and 10 might allow remote attackers to execute arbitrary code via vectors involving garbage collection that causes deletion of a temporary object that is still being used. NOTE: this issue might be related to CVE-2006-3805.

    Published: 2 Apr 2007
    10
    Critical

    CVE-2007-1795

    Last Modified: 23 Apr 2026

    JCcorp URLshrink 1.3.1 allows remote attackers to execute arbitrary PHP code via the email address field in an HTML link. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 2 Apr 2007
    10
    Critical

    CVE-2007-1796

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in JCcorp URLshrink before 1.3.2 have unspecified attack vectors and impact.

    Published: 2 Apr 2007
    7.2
    High

    CVE-2007-1798

    Last Modified: 23 Apr 2026

    Buffer overflow in the drmgr command in IBM AIX 5.2 and 5.3 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a long path name.

    Published: 2 Apr 2007
    5
    Medium

    CVE-2007-2052

    Last Modified: 23 Apr 2026

    Off-by-one error in the PyLocale_strxfrm function in Modules/_localemodule.c for Python 2.4 and 2.5 causes an incorrect buffer size to be used for the strxfrm function, which allows context-dependent attackers to read portions of memory via unknown manipulations that trigger a buffer over-read due to missing null termination.

    Published: 2 Apr 2007