CVE Feed

    Dashboard / CVE

    9.3
    Critical

    CVE-2007-0320

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in (a) an ActiveX control (iftw.dll) and (b) Netscape plug-in (npiftw32.dll) for Macrovision (formerly InstallShield) InstallFromTheWeb allow remote attackers to execute arbitrary code via crafted HTML documents.

    Published: 23 Feb 2007
    9.3
    Critical

    CVE-2007-0321

    Last Modified: 23 Apr 2026

    Buffer overflow in the Update Service Agent ActiveX Control in isusweb.dll for Macrovision FLEXnet Connect (formerly InstallShield Update Service) allows remote attackers to execute arbitrary code via the Download method.

    Published: 23 Feb 2007
    7.6
    High

    CVE-2007-1085

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Google Desktop allows remote attackers to bypass protection schemes and inject arbitrary web script or HTML, and possibly gain full access to the system, by using an XSS vulnerability in google.com to extract the signature for the internal web server, then calling the "under" parameter in Advanced Search with the proper signature.

    Published: 23 Feb 2007
    10
    Critical

    CVE-2006-7027

    Last Modified: 23 Apr 2026

    Microsoft Internet Security and Acceleration (ISA) Server 2004 logs unusual ASCII characters in the Host header, including the tab, which allows remote attackers to manipulate portions of the log file and possibly leverage this for other attacks.

    Published: 23 Feb 2007
    7.5
    High

    CVE-2006-7034

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in directory.php in Super Link Exchange Script 1.0 might allow remote attackers to execute arbitrary SQL queries via the cat parameter.

    Published: 23 Feb 2007
    7.8
    High

    CVE-2006-7041

    Last Modified: 23 Apr 2026

    The SMTP service in MERCUR Messaging 2005 before Service Pack 4 allows remote attackers to cause a denial of service (infinite loop) via a message in which neither the originator nor recipient address is known.

    Published: 23 Feb 2007
    7.8
    High

    CVE-2006-7028

    Last Modified: 23 Apr 2026

    Single CPU Sun systems running Solaris 7, 8, or 9, such as Netra, allows remote attackers to cause a denial of service (console hang) via a flood of small TCP/IP packets. NOTE: this issue has not been replicated by third parties. In addition, the cause is unknown, although it might be related to "jabber" and generation of a large amount of interrupts within the console, or a hardware error.

    Published: 23 Feb 2007
    5
    Medium

    CVE-2006-7029

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 6 SP2 and earlier allows remote attackers to cause a denial of service (crash) via a frameset with only one frame that calls resizeTo with certain arguments. NOTE: this issue might be related to CVE-2006-3637.

    Published: 23 Feb 2007
    6.5
    Medium

    CVE-2006-7031

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 6.0.2900 SP2 and earlier allows remote attackers to cause a denial of service (crash) via a table element with a CSS attribute that sets the position, which triggers an "unhandled exception" in mshtml.dll.

    Published: 23 Feb 2007
    7.8
    High

    CVE-2006-7035

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in make_thumbnail.php in Super Link Exchange Script 1.0 allows remote attackers to read arbitrary files via ".." sequences in the imgpath parameter.

    Published: 23 Feb 2007
    10
    Critical

    CVE-2006-7036

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in register.php for Andys Chat 4.5 allows remote attackers to execute arbitrary code via the action parameter. NOTE: this issue was announced by an unreliable researcher, but the vendor is no longer distributing the product, so the original claims can not be evaluated.

    Published: 23 Feb 2007
    5
    Medium

    CVE-2006-7039

    Last Modified: 23 Apr 2026

    The IMAP4 service in MERCUR Messaging 2005 before Service Pack 4 allows remote attackers to cause a denial of service (crash) via a message with a long subject field.

    Published: 23 Feb 2007
    6.8
    Medium

    CVE-2006-7033

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Super Link Exchange Script 1.0 allows remote attackers to inject arbitrary web script or HTML via IMG tags in the search box.

    Published: 23 Feb 2007
    7.8
    High

    CVE-2006-7040

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in MERCUR Messaging 2005 before Service Pack 4 allows remote attackers to cause a denial of service (crash) via a TOP command to the POP3 service.

    Published: 23 Feb 2007
    6.8
    Medium

    CVE-2006-7026

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in sources/join.php in Aardvark Topsites PHP 4.2.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the CONFIG[path] parameter, a different vector than CVE-2006-2149.

    Published: 23 Feb 2007
    6.8
    Medium

    CVE-2007-0780

    Last Modified: 23 Apr 2026

    browser.js in Mozilla Firefox 1.5.x before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8 uses the requesting URI to identify child windows, which allows remote attackers to conduct cross-site scripting (XSS) attacks by opening a blocked popup originating from a javascript: URI in combination with multiple frames having the same data: URI.

    Published: 23 Feb 2007
    5.8
    Medium

    CVE-2007-0996

    Last Modified: 23 Apr 2026

    The child frames in Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8 inherit the default charset from the parent window, which allows remote attackers to conduct cross-site scripting (XSS) attacks, as demonstrated using the UTF-7 character set.

    Published: 23 Feb 2007
    9.3
    Critical

    CVE-2007-1083

    Last Modified: 23 Apr 2026

    Buffer overflow in the Configuration Checker (ConfigChk) ActiveX control in VSCnfChk.dll 2.0.0.2 for Verisign Managed PKI Service, Secure Messaging for Microsoft Exchange, and Go Secure! allows remote attackers to execute arbitrary code via long arguments to the VerCompare method.

    Published: 23 Feb 2007
    6.8
    Medium

    CVE-2007-1084

    Last Modified: 23 Apr 2026

    Mozilla Firefox 2.0.0.1 and earlier does not prompt users before saving bookmarklets, which allows remote attackers to bypass the same-domain policy by tricking a user into saving a bookmarklet with a data: scheme, which is executed in the context of the last visited web page.

    Published: 23 Feb 2007
    6.8
    Medium

    CVE-2007-1095

    Last Modified: 23 Apr 2026

    Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5 do not properly implement JavaScript onUnload handlers, which allows remote attackers to run certain JavaScript code and access the location DOM hierarchy in the context of the next web site that is visited by a client.

    Published: 23 Feb 2007
    3.7
    Low

    CVE-2007-0775

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in the layout engine in Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, Thunderbird before 1.5.0.10, and SeaMonkey before 1.0.8 allow remote attackers to cause a denial of service (crash) and potentially execute arbitrary code via certain vectors.

    Published: 23 Feb 2007
    5.4
    Medium

    CVE-2007-0778

    Last Modified: 23 Apr 2026

    The page cache feature in Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8 can generate hash collisions that cause page data to be appended to the wrong page cache, which allows remote attackers to obtain sensitive information or enable further attack vectors when the target page is reloaded from the cache.

    Published: 23 Feb 2007
    6.4
    Medium

    CVE-2007-0779

    Last Modified: 23 Apr 2026

    GUI overlay vulnerability in Mozilla Firefox 1.5.x before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8 allows remote attackers to spoof certain user interface elements, such as the host name or security indicators, via the CSS3 hotspot property with a large, transparent, custom cursor.

    Published: 23 Feb 2007
    4.3
    Medium

    CVE-2007-0995

    Last Modified: 23 Apr 2026

    Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8 ignores trailing invalid HTML characters in attribute names, which allows remote attackers to bypass content filters that use regular expressions.

    Published: 23 Feb 2007
    9.3
    Critical

    CVE-2007-1092

    Last Modified: 23 Apr 2026

    Mozilla Firefox 1.5.0.9 and 2.0.0.1, and SeaMonkey before 1.0.8 allow remote attackers to execute arbitrary code via JavaScript onUnload handlers that modify the structure of a document, wich triggers memory corruption due to the lack of a finalize hook on DOM window objects.

    Published: 23 Feb 2007
    9.3
    Critical

    CVE-2007-0777

    Last Modified: 23 Apr 2026

    The JavaScript engine in Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, Thunderbird before 1.5.0.10, and SeaMonkey before 1.0.8 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain vectors that trigger memory corruption.

    Published: 23 Feb 2007
    4.6
    Medium

    CVE-2007-0843

    Last Modified: 23 Apr 2026

    The ReadDirectoryChangesW API function on Microsoft Windows 2000, XP, Server 2003, and Vista does not check permissions for child objects, which allows local users to bypass permissions by opening a directory with LIST (READ) access and using ReadDirectoryChangesW to monitor changes of files that do not have LIST permissions, which can be leveraged to determine filenames, access times, and other sensitive information.

    Published: 23 Feb 2007
    7.5
    High

    CVE-2007-1076

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in phpTrafficA 1.4.1, and possibly earlier, allow remote attackers to include arbitrary local files via a .. (dot dot) in the (1) file parameter to plotStat.php and the (2) lang parameter to banref.php.

    Published: 22 Feb 2007
    7.5
    High

    CVE-2007-1078

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in index.php in FlashGameScript 1.5.4 allows remote attackers to execute arbitrary PHP code via a URL in the func parameter.

    Published: 22 Feb 2007
    7.8
    High

    CVE-2007-1079

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Rhino Software, Inc. FTP Voyager 14.0.0.3 and earlier allows remote servers to cause a denial of service (crash) via a long response to a CWD command, which triggers the overflow when the user aborts the command.

    Published: 22 Feb 2007
    7.5
    High

    CVE-2007-1081

    Last Modified: 23 Apr 2026

    The start function in class.t3lib_formmail.php in TYPO3 before 4.0.5, 4.1beta, and 4.1RC1 allows attackers to inject arbitrary email headers via unknown vectors. NOTE: some details were obtained from third party information.

    Published: 22 Feb 2007
    7.8
    High

    CVE-2007-1080

    Last Modified: 23 Apr 2026

    Multiple heap-based buffer overflows in TurboFTP 5.30 Build 572 allow remote servers to cause a denial of service via (1) long filename in a response to a LIST command, and (2) a long response to a CWD command.

    Published: 22 Feb 2007
    7.1
    High

    CVE-2007-1082

    Last Modified: 23 Apr 2026

    FTP Explorer 1.0.1 Build 047, and other versions before 1.0.1.52, allows remote servers to cause a denial of service (CPU consumption) via a long response to a PWD command.

    Published: 22 Feb 2007
    7.5
    High

    CVE-2007-1077

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in page.asp in Design4Online UserPages2 2.0 allows remote attackers to execute arbitrary SQL commands via the art_id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 22 Feb 2007
    7.8
    High

    CVE-2007-1071

    Last Modified: 23 Apr 2026

    Integer overflow in the gifGetBandProc function in ImageIO in Apple Mac OS X 10.4.8 allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image that triggers the overflow during decompression. NOTE: this is a different issue than CVE-2006-3502 and CVE-2006-3503.

    Published: 22 Feb 2007
    7.8
    High

    CVE-2007-1075

    Last Modified: 23 Apr 2026

    TurboFTP 5.30 Build 572 allows remote servers to cause a denial of service (CPU consumption) via a response with a large number of newline characters.

    Published: 22 Feb 2007
    7.2
    High

    CVE-2007-1072

    Last Modified: 23 Apr 2026

    The command line interface (CLI) in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier allows local users to obtain privileges or cause a denial of service via unspecified vectors. NOTE: this issue can be leveraged remotely via CVE-2007-1063.

    Published: 22 Feb 2007
    10
    Critical

    CVE-2007-1073

    Last Modified: 23 Apr 2026

    Static code injection vulnerability in install.php in mcRefer allows remote attackers to execute arbitrary PHP code via the bgcolor parameter, which is inserted into mcrconf.inc.php.

    Published: 22 Feb 2007
    9.3
    Critical

    CVE-2007-1074

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in NewsBin Pro 5.33 and NewsBin Pro 4.x allow user-assisted remote attackers to execute arbitrary code via a long (1) DataPath or (2) DownloadPath attributed in a (a) NBI file, or (3) a long group field in a (b) NZB file.

    Published: 22 Feb 2007
    10
    Critical

    CVE-2006-6490

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in the SupportSoft (1) SmartIssue (tgctlsi.dll) and (2) ScriptRunner (tgctlsr.dll) ActiveX controls, as used by Symantec Automated Support Assistant and Norton AntiVirus, Internet Security, and System Works 2006, allows remote attackers to execute arbitrary code via a crafted HTML message.

    Published: 22 Feb 2007
    10
    Critical

    CVE-2007-1062

    Last Modified: 23 Apr 2026

    The Cisco Unified IP Conference Station 7935 3.2(15) and earlier, and Station 7936 3.3(12) and earlier does not properly handle administrator HTTP sessions, which allows remote attackers to bypass authentication controls via a direct URL request to the administrative HTTP interface for a limited time

    Published: 22 Feb 2007
    10
    Critical

    CVE-2007-1063

    Last Modified: 23 Apr 2026

    The SSH server in Cisco Unified IP Phone 7906G, 7911G, 7941G, 7961G, 7970G, and 7971G, with firmware 8.0(4)SR1 and earlier, uses a hard-coded username and password, which allows remote attackers to access the device.

    Published: 22 Feb 2007
    6.8
    Medium

    CVE-2007-1064

    Last Modified: 23 Apr 2026

    Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client do not drop privileges when the help facility in the supplicant GUI is invoked, which allows local users to gain privileges, aka CSCsf14120.

    Published: 22 Feb 2007
    6.8
    Medium

    CVE-2007-1065

    Last Modified: 23 Apr 2026

    Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client allows local users to gain SYSTEM privileges via unspecified vectors in the supplicant, aka CSCsf15836.

    Published: 22 Feb 2007
    7.2
    High

    CVE-2007-1067

    Last Modified: 23 Apr 2026

    Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client do not properly parse commands, which allows local users to gain privileges via unspecified vectors, aka CSCsh30624.

    Published: 22 Feb 2007
    6.8
    Medium

    CVE-2007-1066

    Last Modified: 23 Apr 2026

    Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client use an insecure default Discretionary Access Control Lists (DACL) for the connection client GUI, which allows local users to gain privileges by injecting "a thread under ConnectionClient.exe," aka CSCsg20558.

    Published: 22 Feb 2007
    7.2
    High

    CVE-2007-1068

    Last Modified: 23 Apr 2026

    The (1) TTLS CHAP, (2) TTLS MSCHAP, (3) TTLS MSCHAPv2, (4) TTLS PAP, (5) MD5, (6) GTC, (7) LEAP, (8) PEAP MSCHAPv2, (9) PEAP GTC, and (10) FAST authentication methods in Cisco Secure Services Client (CSSC) 4.x, Trust Agent 1.x and 2.x, Cisco Security Agent (CSA) 5.0 and 5.1 (when a vulnerable Trust Agent has been deployed), and the Meetinghouse AEGIS SecureConnect Client store transmitted authentication credentials in plaintext log files, which allows local users to obtain sensitive information by reading these files, aka CSCsg34423.

    Published: 22 Feb 2007
    6.8
    Medium

    CVE-2007-1060

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Interspire SendStudio 2004.14 and earlier, when register_globals and allow_fopenurl are enabled, allow remote attackers to execute arbitrary PHP code via a URL in the ROOTDIR parameter to (1) createemails.inc.php and (2) send_emails.inc.php in /admin/includes/.

    Published: 22 Feb 2007
    6.8
    Medium

    CVE-2007-1061

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in Francisco Burzi PHP-Nuke 8.0 Final and earlier, when the "HTTP Referers" block is enabled, allows remote attackers to execute arbitrary SQL commands via the HTTP Referer header (HTTP_REFERER variable).

    Published: 22 Feb 2007
    5
    Medium

    CVE-2007-3389

    Last Modified: 23 Apr 2026

    Wireshark before 0.99.6 allows remote attackers to cause a denial of service (crash) via a crafted chunked encoding in an HTTP response, possibly related to a zero-length payload.

    Published: 22 Feb 2007