CVE Feed

    Dashboard / CVE

    7.1
    High

    CVE-2007-1398

    Last Modified: 23 Apr 2026

    The frag3 preprocessor in Snort 2.6.1.1, 2.6.1.2, and 2.7.0 beta, when configured for inline use on Linux without the ip_conntrack module loaded, allows remote attackers to cause a denial of service (segmentation fault and application crash) via certain UDP packets produced by send_morefrag_packet and send_overlap_packet.

    Published: 10 Mar 2007
    7.5
    High

    CVE-2007-1402

    Last Modified: 23 Apr 2026

    The Rediff Toolbar 2.0 ActiveX control in redifftoolbar.dll allows remote attackers to cause a denial of service via unspecified manipulations, possibly involving improper initialization or blank arguments.

    Published: 10 Mar 2007
    7.3
    High

    CVE-2007-1404

    Last Modified: 23 Apr 2026

    tftpd.exe in ProSysInfo TFTP Server TFTPDWIN 0.4.2 allows remote attackers to cause a denial of service via a long UDP packet that is not properly handled in a recv_from call. NOTE: this issue might be related to CVE-2006-4948.

    Published: 10 Mar 2007
    4.3
    Medium

    CVE-2007-1405

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the "download wiki page as text" feature in Trac before 0.10.3.1, when Microsoft Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.

    Published: 10 Mar 2007
    7.5
    High

    CVE-2007-1407

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in OpenSolution Quick.Cart before 2.1 has unknown impact and attack vectors, related to a "low critical exploit."

    Published: 10 Mar 2007
    7.5
    High

    CVE-2007-1410

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in kategori.asp in GaziYapBoz Game Portal allows remote attackers to execute arbitrary SQL commands via the kategori parameter.

    Published: 10 Mar 2007
    10
    Critical

    CVE-2007-1365

    Last Modified: 23 Apr 2026

    Buffer overflow in kern/uipc_mbuf2.c in OpenBSD 3.9 and 4.0 allows remote attackers to execute arbitrary code via fragmented IPv6 packets due to "incorrect mbuf handling for ICMP6 packets." NOTE: this was originally reported as a denial of service.

    Published: 10 Mar 2007
    6.9
    Medium

    CVE-2007-1273

    Last Modified: 23 Apr 2026

    Integer overflow in the ktruser function in NetBSD-current before 20061022, NetBSD 3 and 3-0 before 20061024, and NetBSD 2 before 20070209, when the kernel is built with the COMPAT_FREEBSD or COMPAT_DARWIN option, allows local users to cause a denial of service and possibly gain privileges.

    Published: 10 Mar 2007
    9.3
    Critical

    CVE-2007-0999

    Last Modified: 23 Apr 2026

    Format string vulnerability in Ekiga 2.0.3, and probably other versions, allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2007-1006.

    Published: 10 Mar 2007
    4.1
    Medium

    CVE-2007-1345

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in cube.exe in the GINA component for CA (Computer Associates) eTrust Admin 8.1.0 through 8.1.2 allows attackers with physical interactive or Remote Desktop access to bypass authentication and gain privileges via the password reset interface.

    Published: 10 Mar 2007
    6.4
    Medium

    CVE-2007-1384

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in torrent.cpp in KTorrent before 2.1.2 allows remote attackers to overwrite arbitrary files via ".." sequences in a torrent filename.

    Published: 10 Mar 2007
    7.5
    High

    CVE-2007-1385

    Last Modified: 23 Apr 2026

    chunkcounter.cpp in KTorrent before 2.1.2 allows remote attackers to cause a denial of service (crash) and heap corruption via a negative or large idx value.

    Published: 10 Mar 2007
    7.8
    High

    CVE-2007-3391

    Last Modified: 23 Apr 2026

    Wireshark 0.99.5 allows remote attackers to cause a denial of service (memory consumption) via a malformed DCP ETSI packet that triggers an infinite loop.

    Published: 10 Mar 2007
    6.9
    Medium

    CVE-2006-7163

    Last Modified: 23 Apr 2026

    DreameeSoft Password Master 1.0 stores the database in an unencrypted format when the master password is set, which allows attackers with physical access to read the database contents via an unspecified authentication bypass. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 10 Mar 2007
    5.1
    Medium

    CVE-2007-1378

    Last Modified: 23 Apr 2026

    The ovrimos_longreadlen function in the Ovrimos extension for PHP before 4.4.5 allows context-dependent attackers to write to arbitrary memory locations via the result_id and length arguments.

    Published: 10 Mar 2007
    5
    Medium

    CVE-2007-1375

    Last Modified: 23 Apr 2026

    Integer overflow in the substr_compare function in PHP 5.2.1 and earlier allows context-dependent attackers to read sensitive memory via a large value in the length argument, a different vulnerability than CVE-2006-1991.

    Published: 10 Mar 2007
    10
    Critical

    CVE-2007-1373

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Mercury/32 (aka Mercury Mail Transport System) 4.01b and earlier allows remote attackers to execute arbitrary code via a long LOGIN command. NOTE: this might be the same issue as CVE-2006-5961.

    Published: 10 Mar 2007
    4.3
    Medium

    CVE-2007-1374

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in pop_profile.asp in Snitz Forums 2000 3.4.06 allows remote attackers to inject arbitrary web script or HTML via the MSN parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 10 Mar 2007
    6.8
    Medium

    CVE-2007-1001

    Last Modified: 23 Apr 2026

    Multiple integer overflows in the (1) createwbmp and (2) readwbmp functions in wbmp.c in the GD library (libgd) in PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allow context-dependent attackers to execute arbitrary code via Wireless Bitmap (WBMP) images with large width or height values.

    Published: 10 Mar 2007
    6.9
    Medium

    CVE-2007-1371

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in Conquest 8.2a and earlier (1) allow local users to gain privileges by querying a metaserver that sends a long server entry processed by metaGetServerList and allow remote metaservers to execute arbitrary code via a long server entry processed by metaGetServerList; (2) allow attackers to have an unknown impact by exceeding the configured number of metaservers; and allow remote attackers to corrupt memory via a SP_CLIENTSTAT packet with certain values of (3) unum or (4) snum, different vulnerabilities than CVE-2003-0933.

    Published: 10 Mar 2007
    10
    Critical

    CVE-2007-1372

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in styles/internal/header.php in the PostGuestbook 0.6.1 module for PHP-Nuke allows remote attackers to execute arbitrary PHP code via a URL in the tpl_pgb_moddir parameter.

    Published: 10 Mar 2007
    7.5
    High

    CVE-2007-1376

    Last Modified: 23 Apr 2026

    The shmop functions in PHP before 4.4.5, and before 5.2.1 in the 5.x series, do not verify that their arguments correspond to a shmop resource, which allows context-dependent attackers to read and write arbitrary memory locations via arguments associated with an inappropriate resource, as demonstrated by a GD Image resource.

    Published: 10 Mar 2007
    5
    Medium

    CVE-2007-1377

    Last Modified: 23 Apr 2026

    AcroPDF.DLL in Adobe Reader 8.0, when accessed from Mozilla Firefox, Netscape, or Opera, allows remote attackers to cause a denial of service (unspecified resource consumption) via a .pdf URL with an anchor identifier that begins with search= followed by many %n sequences, a different vulnerability than CVE-2006-6027 and CVE-2006-6236.

    Published: 10 Mar 2007
    5.1
    Medium

    CVE-2007-1379

    Last Modified: 23 Apr 2026

    The ovrimos_close function in the Ovrimos extension for PHP before 4.4.5 can trigger efree of an arbitrary address, which might allow context-dependent attackers to execute arbitrary code.

    Published: 10 Mar 2007
    7.6
    High

    CVE-2007-1381

    Last Modified: 23 Apr 2026

    The wddx_deserialize function in wddx.c 1.119.2.10.2.12 and 1.119.2.10.2.13 in PHP 5, as modified in CVS on 20070224 and fixed on 20070304, calls strlcpy where strlcat was intended and uses improper arguments, which allows context-dependent attackers to execute arbitrary code via a WDDX packet with a malformed overlap of a STRING element, which triggers a buffer overflow.

    Published: 10 Mar 2007
    6.8
    Medium

    CVE-2007-1382

    Last Modified: 23 Apr 2026

    The PHP COM extensions for PHP on Windows systems allow context-dependent attackers to execute arbitrary code via a WScript.Shell COM object, as demonstrated by using the Run method of this object to execute cmd.exe, which bypasses PHP's safe mode.

    Published: 10 Mar 2007
    9.8
    Critical

    CVE-2007-1383

    Last Modified: 23 Apr 2026

    Integer overflow in the 16 bit variable reference counter in PHP 4 allows context-dependent attackers to execute arbitrary code by overflowing this counter, which causes the same variable to be destroyed twice, a related issue to CVE-2007-1286.

    Published: 10 Mar 2007
    4.3
    Medium

    CVE-2007-1367

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the login page in Avaya Communications Manager (CM) S87XX, S8500, and S8300 products before 3.1.3 allows remote attackers to inject arbitrary web script or HTML via the Login field.

    Published: 9 Mar 2007
    3.5
    Low

    CVE-2007-1368

    Last Modified: 23 Apr 2026

    The Project issue tracking module before 4.7.x-1.3, 4.7.x-2.* before 4.7.x-2.3, and 5 before 5.x-0.2-beta for Drupal allows remote authenticated users, with "access project issues" permission, to read the contents of a private node via a URL with a modified node identifier.

    Published: 9 Mar 2007
    4.4
    Medium

    CVE-2007-1369

    Last Modified: 23 Apr 2026

    ini_modifier (sgid-zendtech) in Zend Platform 2.2.3 and earlier allows local users to modify the system php.ini file by editing a copy of php.ini file using the -f parameter, and then performing a symlink attack using the directory that contains the attacker-controlled php.ini file, and linking this directory to /usr/local/Zend/etc.

    Published: 9 Mar 2007
    6.2
    Medium

    CVE-2007-1370

    Last Modified: 23 Apr 2026

    Zend Platform 2.2.3 and earlier has incorrect ownership for scd.sh and certain other files, which allows local users to gain root privileges by modifying the files. NOTE: this only occurs when safe_mode and open_basedir are disabled; other settings require leverage for other vulnerabilities.

    Published: 9 Mar 2007
    9.3
    Critical

    CVE-2007-1667

    Last Modified: 23 Apr 2026

    Multiple integer overflows in (1) the XGetPixel function in ImUtil.c in X.Org libx11 before 1.0.3, and (2) XInitImage function in xwd.c for ImageMagick, allow user-assisted remote attackers to cause a denial of service (crash) or obtain sensitive information via crafted images with large or negative values that trigger a buffer overflow.

    Published: 9 Mar 2007
    2.1
    Low

    CVE-2007-1420

    Last Modified: 23 Apr 2026

    MySQL 5.x before 5.0.36 allows local users to cause a denial of service (database crash) by performing information_schema table subselects and using ORDER BY to sort a single-row result, which prevents certain structure elements from being initialized and triggers a NULL dereference in the filesort function.

    Published: 9 Mar 2007
    4.3
    Medium

    CVE-2007-1361

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in virtuemart_parser.php in VirtueMart before 20070213 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: this issue is probably different than CVE-2007-0376.

    Published: 8 Mar 2007
    6.8
    Medium

    CVE-2007-1359

    Last Modified: 23 Apr 2026

    Interpretation conflict in ModSecurity (mod_security) 2.1.0 and earlier allows remote attackers to bypass request rules via application/x-www-form-urlencoded POST data that contains an ASCIIZ (0x00) byte, which mod_security treats as a terminator even though it is still processed as normal data by some HTTP parsers including PHP 5.2.0, and possibly parsers in Perl, and Python.

    Published: 8 Mar 2007
    6
    Medium

    CVE-2007-1360

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Nodefamily module for Drupal 5.x before 5.x-1.0 allows remote authenticated users to access and modify other users' profiles via unspecified URL parameters.

    Published: 8 Mar 2007
    6.6
    Medium

    CVE-2007-1346

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in ipmitool for Sun Fire X2100M2 and X2200M2 allows local users to gain privileges and reset or turn off the server.

    Published: 8 Mar 2007
    7.1
    High

    CVE-2007-1347

    Last Modified: 23 Apr 2026

    Microsoft Windows Explorer on Windows 2000 SP4 FR and XP SP2 FR, and possibly other versions and platforms, allows remote attackers to cause a denial of service (memory corruption and crash) via an Office file with crafted document summary information, which causes an error in Ole32.dll.

    Published: 8 Mar 2007
    7.5
    High

    CVE-2007-1339

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in Links Management Application 1.0 allows remote attackers to execute arbitrary SQL commands via the lcnt parameter.

    Published: 8 Mar 2007
    7.5
    High

    CVE-2007-1340

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in eintrag.php in Weltennetz News-Letterman 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the sqllog parameter.

    Published: 8 Mar 2007
    5
    Medium

    CVE-2007-1341

    Last Modified: 23 Apr 2026

    include/auth/auth.php in Simple Invoices before 2007 03 05 does not use the login system to protect print preview pages for invoices, which might allow attackers to obtain sensitive information.

    Published: 8 Mar 2007
    4.3
    Medium

    CVE-2007-1342

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in admincp/index.php in Jelsoft vBulletin 3.6.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the add rss url form.

    Published: 8 Mar 2007
    7.5
    High

    CVE-2007-1343

    Last Modified: 23 Apr 2026

    includes/functions.php in Craig Knudsen WebCalendar before 1.0.5 does not protect the noSet variable from external modification, which allows remote attackers to set arbitrary global variables via a URL with modified values in the noSet parameter, which leads to resultant vulnerabilities that probably include remote file inclusion and other issues.

    Published: 8 Mar 2007
    9.3
    Critical

    CVE-2007-1344

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in src/ezstream.c in Ezstream before 0.3.0 allow remote attackers to execute arbitrary code via a crafted XML configuration file processed by the (1) urlParse function, which causes a stack-based overflow and the (2) ReplaceString function, which causes a heap-based overflow. NOTE: some of these details are obtained from third party information.

    Published: 8 Mar 2007
    6.8
    Medium

    CVE-2007-1350

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in webadmin.exe in Novell NetMail 3.5.2 allows remote attackers to execute arbitrary code via a long username during HTTP Basic authentication.

    Published: 8 Mar 2007
    4.4
    Medium

    CVE-2007-1388

    Last Modified: 23 Apr 2026

    The do_ipv6_setsockopt function in net/ipv6/ipv6_sockglue.c in Linux kernel before 2.6.20, and possibly other versions, allows local users to cause a denial of service (oops) by calling setsockopt with the IPV6_RTHDR option name and possibly a zero option length or invalid option value, which triggers a NULL pointer dereference.

    Published: 8 Mar 2007
    7.5
    High

    CVE-2007-1338

    Last Modified: 23 Apr 2026

    The default configuration of the AirPort utility in Apple AirPort Extreme creates an IPv6 tunnel but does not enable the "Block incoming IPv6 connections" setting, which might allow remote attackers to bypass intended access restrictions by establishing IPv6 sessions that would have been rejected over IPv4.

    Published: 7 Mar 2007
    1.9
    Low

    CVE-2006-7162

    Last Modified: 23 Apr 2026

    PuTTY 0.59 and earlier uses weak file permissions for (1) ppk files containing private keys generated by puttygen and (2) session logs created by putty, which allows local users to gain sensitive information by reading these files.

    Published: 7 Mar 2007
    7.5
    High

    CVE-2007-1326

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in Serendipity 1.1.1 allows remote attackers to execute arbitrary SQL commands via the serendipity[multiCat][] parameter.

    Published: 7 Mar 2007
    7.8
    High

    CVE-2007-1327

    Last Modified: 23 Apr 2026

    The SILC_SERVER_CMD_FUNC function in apps/silcd/command.c in silc-server 1.0.2 allows remote attackers to cause a denial of service (NULL dereference and daemon crash) via a request without a cipher algorithm and an invalid HMAC algorithm.

    Published: 7 Mar 2007