CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2006-7023

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in fx-APP 0.0.8.1 allow remote attackers to inject arbitrary HTML or web script via (1) the search box, and the (2) url, (3) website, (4) comment, and (5) signature fields in the profile, and possibly (6) a menu item.

    Published: 15 Feb 2007
    10
    Critical

    CVE-2006-7022

    Last Modified: 23 Apr 2026

    The Tools module in fx-APP 0.0.8.1 allows remote attackers to misrepresent the contents of a web page via an arbitrary URL in the url parameter to a showhtml action for index.php, which causes the URL to be displayed within an iframe.

    Published: 15 Feb 2007
    6.8
    Medium

    CVE-2007-0950

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in listmain.asp in Fullaspsite ASP Hosting Site allows remote attackers to inject arbitrary web script or HTML via the cat parameter.

    Published: 15 Feb 2007
    7.8
    High

    CVE-2007-0955

    Last Modified: 23 Apr 2026

    The NTLM_UnPack_Type3 function in MENTLM.dll in MailEnable Professional 2.35 and earlier allows remote attackers to cause a denial of service (application crash) via certain base64-encoded data following an AUTHENTICATE NTLM command to the imap port (143/tcp), which results in an out-of-bounds read.

    Published: 15 Feb 2007
    4.3
    Medium

    CVE-2007-0953

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in search.pl in @Mail 4.61 and earlier allows remote attackers to inject arbitrary web script or HTML via the keywords parameter.

    Published: 15 Feb 2007
    10
    Critical

    CVE-2007-0954

    Last Modified: 23 Apr 2026

    MOHA Chat 0.1b7 and earlier does not require authentication for use of the plug in API, which has unknown impact and attack vectors.

    Published: 15 Feb 2007
    7.5
    High

    CVE-2006-7019

    Last Modified: 23 Apr 2026

    phpwcms 1.2.5-DEV and earlier, and 1.1 before RC4, allows remote attackers to execute arbitrary code via crafted arguments to the (1) text_evento and (2) email_eventonome_evento parameters to phpwcms_code_snippets/mail_file_form.php and sample_ext_php/mail_file_form.php, which is processed by the render_PHPcode function. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 15 Feb 2007
    6.8
    Medium

    CVE-2007-0952

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Scriptsez.net Virtual Calendar allow remote attackers to inject arbitrary web script or HTML via the (1) t and (2) yr parameters, and the (3) sho parameter when the m parameter is outside the intended range.

    Published: 15 Feb 2007
    7.5
    High

    CVE-2006-7013

    Last Modified: 23 Apr 2026

    QueryString.php in Simple Machines Forum (SMF) 1.0.7 and earlier, and 1.1rc2 and earlier, allows remote attackers to more easily spoof the IP address and evade banning via a modified X-Forwarded-For HTTP header, which is preferred instead of other more reliable sources for the IP address. NOTE: the original researcher claims that the vendor has disputed this issue

    Published: 15 Feb 2007
    10
    Critical

    CVE-2006-7015

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in admin.jobline.php in Jobline 1.1.1 allows remote attackers to execute arbitrary code via a URL in the mosConfig_absolute_path parameter. NOTE: CVE disputes this issue because the script is protected against direct requests

    Published: 15 Feb 2007
    7.5
    High

    CVE-2006-7017

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Indexu 5.0.1 allow remote attackers to execute arbitrary PHP code via a URL in the admin_template_path parameter to admin/ scripts (1) app_change_email.php, (2) app_change_pwd.php, (3) app_mod_rewrite.php, (4) app_page_caching.php, (5) app_setup.php, (6) cat_add.php, (7) cat_delete.php, (8) cat_edit.php, (9) cat_path_update.php, (10) cat_search.php, (11) cat_struc.php, (12) cat_view.php, (13) cat_view_hidden.php, (14) cat_view_hierarchy.php, (15) cat_view_registered_only.php, (16) checkurl_web.php, (17) db_alter.php, (18) db_alter_change.php, (19) db_backup.php, (20) db_export.php, (21) db_import.php, (22) editor_add.php, (23) editor_delete.php, (24) editor_validate.php, (25) head.php, (26) index.php, (27) inv_config.php, (28) inv_config_payment.php, (29) inv_create.php, (30) inv_delete.php, (31) inv_edit.php, (32) inv_markpaid.php, (33) inv_markunpaid.php, (34) inv_overdue.php, (35) inv_paid.php, (36) inv_send.php, (37) inv_unpaid.php, (38) lang_modify.php, (39) link_add.php, (40) link_bad.php, (41) link_bad_delete.php, (42) link_checkurl.php, (43) link_delete.php, (44) link_duplicate.php, (45) link_edit.php, (46) link_premium_listing.php, (47) link_premium_sponsored.php, (48) link_search.php, (49) link_sponsored_listing.php, (50) link_validate.php, (51) link_validate_edit.php, (52) link_view.php, (53) log_search.php, (54) mail_modify.php, (55) menu.php, (56) message_create.php, (57) message_delete.php, (58) message_edit.php, (59) message_send.php, (60) message_subscriber.php, (61) message_view.php, (62) review_validate.php, (63) review_validate_edit.php, (64) summary.php, (65) template_active.php, (66) template_add_custom.php, (67) template_delete.php, (68) template_delete_file.php, (69) template_duplicate.php, (70) template_export.php, (71) template_import.php, (72) template_manager.php, (73) template_modify.php, (74) template_modify_file.php, (75) template_rename.php, (76) user_add.php, (77) user_delete.php, (78) user_edit.php, (79) user_search.php, and (80) whos.php.

    Published: 15 Feb 2007
    7.8
    High

    CVE-2006-7020

    Last Modified: 23 Apr 2026

    CRLF injection vulnerability in (1) include/inc_act/act_formmailer.php and possibly (2) sample_ext_php/mail_file_form.php in phpwcms 1.2.5-DEV and earlier, and 1.1 before RC4, allows remote attackers to modify HTTP headers and send spam e-mail via a spoofed HTTP Referer (HTTP_REFERER).

    Published: 15 Feb 2007
    7.5
    High

    CVE-2006-7024

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Harpia CMS 1.0.5 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) func_prog parameter to (a) preload.php and (b) index.php; (2) header_prog parameter to (c) missing.php and (d) email.php, (e) files.php, (f) headlines.php, (g) search.php, (h) topics.php, and (i) users.php in _mods/; (3) theme_root parameter to (j) footer.php, (k) header.php, (l) pfooter.php, and (m) pheader.php in _inc; (4) mod_root parameter to _inc/header.php; and the (5) mod_dir and (6) php_ext parameters to (n) _inc/web_statsConfig.php.

    Published: 15 Feb 2007
    7.5
    High

    CVE-2006-7011

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in adminips.php in Develooping Flash Chat allows remote attackers to execute arbitrary PHP code via a URL in the banned_file parameter. NOTE: CVE disputes this vulnerability because banned_file is set to a constant value

    Published: 15 Feb 2007
    10
    Critical

    CVE-2006-7012

    Last Modified: 23 Apr 2026

    scart.cgi in SCart 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the page parameter of a show_text action.

    Published: 15 Feb 2007
    10
    Critical

    CVE-2006-7018

    Last Modified: 23 Apr 2026

    phpwcms 1.2.5-DEV and earlier, and 1.1 before RC4, allows remote attackers to execute arbitrary code via a crafted argument to the nome_evento parameter to phpwcms_code_snippets/mail_file_form.php and (2) sample_ext_php/mail_file_form.php, which is processed by the render_PHPcode function.

    Published: 15 Feb 2007
    10
    Critical

    CVE-2007-0949

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in iTinySoft Studio Total Video Player 1.03, and possibly earlier, allows remote attackers to execute arbitrary code via a M3U playlist file that contains a long file name. NOTE: it was later reported that 1.20 and 1.30 are also affected.

    Published: 15 Feb 2007
    7.5
    High

    CVE-2007-0951

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in listmain.asp in Fullaspsite ASP Hosting Site allows remote attackers to execute arbitrary SQL commands via the cat parameter.

    Published: 15 Feb 2007
    4.3
    Medium

    CVE-2007-0922

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in buscador/buscador.htm in Portal Search allows remote attackers to inject arbitrary web script or HTML via the query string.

    Published: 14 Feb 2007
    7.8
    High

    CVE-2007-0923

    Last Modified: 23 Apr 2026

    buscador/buscador.htm in Portal Search allows remote attackers to obtain sensitive information (business logic) via a query string composed of a search for certain characters.

    Published: 14 Feb 2007
    7.5
    High

    CVE-2007-0924

    Last Modified: 23 Apr 2026

    Till Gerken phpPolls 1.0.3 allows remote attackers to bypass authentication and perform certain administrative actions via a direct request to phpPollAdmin.php3. NOTE: this issue might subsume CVE-2006-3764.

    Published: 14 Feb 2007
    4.3
    Medium

    CVE-2007-0925

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in search/SearchResults.aspx in Community Server allows remote attackers to inject arbitrary web script or HTML via the q parameter.

    Published: 14 Feb 2007
    7.5
    High

    CVE-2007-0926

    Last Modified: 23 Apr 2026

    The dologin function in guestbook.php in KvGuestbook 1.0 Beta allows remote attackers to gain administrative privileges, probably via modified $mysql['pass'] and $gbpass variables.

    Published: 14 Feb 2007
    7.5
    High

    CVE-2007-0927

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in uTorrent 1.6 allows remote attackers to execute arbitrary code via a torrent file with a crafted announce header.

    Published: 14 Feb 2007
    7.5
    High

    CVE-2007-0930

    Last Modified: 23 Apr 2026

    Variable extract vulnerability in Apache Stats before 0.0.3beta allows attackers to modify arbitrary variables and conduct attacks via unknown vectors involving the use of PHP's extract function.

    Published: 14 Feb 2007
    7.5
    High

    CVE-2007-0932

    Last Modified: 23 Apr 2026

    The (1) Aruba Mobility Controllers 200, 600, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 do not properly implement authentication and privilege assignment for the guest account, which allows remote attackers to access administrative interfaces or the WLAN.

    Published: 14 Feb 2007
    7.5
    High

    CVE-2007-0920

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in philboard_forum.asp in Philboard 1.14 and earlier allows remote attackers to execute arbitrary SQL commands via the forumid parameter.

    Published: 14 Feb 2007
    7.5
    High

    CVE-2007-0931

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the management interfaces in (1) Aruba Mobility Controllers 200, 800, 2400, and 6000 and (2) Alcatel-Lucent OmniAccess Wireless 43xx and 6000 allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via long credential strings.

    Published: 14 Feb 2007
    9.4
    Critical

    CVE-2007-0921

    Last Modified: 23 Apr 2026

    Portal Search allows remote attackers to redirect a URL to an arbitrary web site by placing the URL in the query string to the top-level URI.

    Published: 14 Feb 2007
    5
    Medium

    CVE-2007-0929

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in php rrd browser before 0.2.1 allows remote attackers to read arbitrary files via ".." sequences in the p parameter.

    Published: 14 Feb 2007
    7.8
    High

    CVE-2007-0919

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in Nickolas Grigoriadis Mini Web server (MiniWebsvr) 0.0.6 allows remote attackers to list the directory immediately above the web root via a ..%00 sequence in the URI.

    Published: 14 Feb 2007
    5
    Medium

    CVE-2007-0928

    Last Modified: 23 Apr 2026

    Virtual Calendar stores sensitive information under the web root with insufficient access control, which allows remote attackers to download an encoded password via a direct request for pwd.txt.

    Published: 14 Feb 2007
    4.3
    Medium

    CVE-2006-5860

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the administrator console for Adobe JRun 4.0, as used in ColdFusion, allows remote attackers to inject arbitrary web script or HTML via unknown vectors.

    Published: 14 Feb 2007
    4.9
    Medium

    CVE-2007-0916

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the Address and Routing Parameter Area (ARPA) transport functionality in HP-UX B.11.11 and B.11.23 allows local users to cause an unspecified denial of service via unknown vectors.

    Published: 14 Feb 2007
    6.4
    Medium

    CVE-2007-0917

    Last Modified: 23 Apr 2026

    The Intrusion Prevention System (IPS) feature for Cisco IOS 12.4XE to 12.3T allows remote attackers to bypass IPS signatures that use regular expressions via fragmented packets.

    Published: 14 Feb 2007
    7.1
    High

    CVE-2007-0918

    Last Modified: 23 Apr 2026

    The ATOMIC.TCP signature engine in the Intrusion Prevention System (IPS) feature for Cisco IOS 12.4XA, 12.3YA, 12.3T, and other trains allows remote attackers to cause a denial of service (IPS crash and traffic loss) via unspecified manipulations that are not properly handled by the regular expression feature, as demonstrated using the 3123.0 (Netbus Pro Traffic) signature.

    Published: 14 Feb 2007
    7.1
    High

    CVE-2007-0914

    Last Modified: 23 Apr 2026

    Race condition in the TCP subsystem for Solaris 10 allows remote attackers to cause a denial of service (system panic) via unknown vectors.

    Published: 14 Feb 2007
    10
    Critical

    CVE-2007-0915

    Last Modified: 23 Apr 2026

    Distributed SLS daemon (SLSd) on HP-UX B.11.11 allows remote attackers to overwrite arbitrary files and gain privileges via a crafted RPC request.

    Published: 14 Feb 2007
    4.3
    Medium

    CVE-2006-5859

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Adobe ColdFusion MX 7 7.0 and 7.0.1, when Global Script Protection is not enabled, allows remote attackers to inject arbitrary HTML and web script via unknown vectors, possibly related to Linkdirect.cfm, Topnav.cfm, and Welcomedoc.cfm.

    Published: 14 Feb 2007
    9.3
    Critical

    CVE-2007-0913

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Microsoft Powerpoint allows remote user-assisted attackers to execute arbitrary code via unknown attack vectors, as exploited by Trojan.PPDropper.G. NOTE: as of 20070213, it is not clear whether this is the same issue as CVE-2006-5296, CVE-2006-4694, CVE-2006-3876, CVE-2006-3877, or older issues.

    Published: 14 Feb 2007
    7.5
    High

    CVE-2007-1825

    Last Modified: 23 Apr 2026

    Buffer overflow in the imap_mail_compose function in PHP 5 before 5.2.1, and PHP 4 before 4.4.5, allows remote attackers to execute arbitrary code via a long boundary string in a type.parameters field. NOTE: as of 20070411, it appears that this issue might be subsumed by CVE-2007-0906.3.

    Published: 14 Feb 2007
    4.3
    Medium

    CVE-2007-0988

    Last Modified: 23 Apr 2026

    The zend_hash_init function in PHP 5 before 5.2.1 and PHP 4 before 4.4.5, when running on a 64-bit platform, allows context-dependent attackers to cause a denial of service (infinite loop) by unserializing certain integer expressions, which only cause 32-bit arguments to be used after the check for a negative value, as demonstrated by an "a:2147483649:{" argument.

    Published: 14 Feb 2007
    6.8
    Medium

    CVE-2007-1701

    Last Modified: 23 Apr 2026

    PHP 4 before 4.4.5, and PHP 5 before 5.2.1, when register_globals is enabled, allows context-dependent attackers to execute arbitrary code via deserialization of session data, which overwrites arbitrary global variables, as demonstrated by calling session_decode on a string beginning with "_SESSION|s:39:".

    Published: 14 Feb 2007
    5
    Medium

    CVE-2007-1380

    Last Modified: 23 Apr 2026

    The php_binary serialization handler in the session extension in PHP before 4.4.5, and 5.x before 5.2.1, allows context-dependent attackers to obtain sensitive information (memory contents) via a serialized variable entry with a large length value, which triggers a buffer over-read.

    Published: 14 Feb 2007
    10
    Critical

    CVE-2007-0219

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 5.01, 6, and 7 uses certain COM objects from (1) Msb1fren.dll, (2) Htmlmm.ocx, and (3) Blnmgrps.dll as ActiveX controls, which allows remote attackers to execute arbitrary code via unspecified vectors, a different issue than CVE-2006-4697.

    Published: 13 Feb 2007
    7.5
    High

    CVE-2007-0905

    Last Modified: 23 Apr 2026

    PHP before 5.2.1 allows attackers to bypass safe_mode and open_basedir restrictions via unspecified vectors in the session extension. NOTE: it is possible that this issue is a duplicate of CVE-2006-6383.

    Published: 13 Feb 2007
    5
    Medium

    CVE-2007-0907

    Last Modified: 23 Apr 2026

    Buffer underflow in PHP before 5.2.1 allows attackers to cause a denial of service via unspecified vectors involving the sapi_header_op function.

    Published: 13 Feb 2007
    7.5
    High

    CVE-2007-0909

    Last Modified: 23 Apr 2026

    Multiple format string vulnerabilities in PHP before 5.2.1 might allow attackers to execute arbitrary code via format string specifiers to (1) all of the *print functions on 64-bit systems, and (2) the odbc_result_all function.

    Published: 13 Feb 2007
    9.3
    Critical

    CVE-2007-0912

    Last Modified: 23 Apr 2026

    Cross-Site Request Forgery (CSRF) vulnerability in admin/admin.adm.php in Jportal 2.3.1, and possibly earlier, allows remote attackers to perform privileged actions as administrators by tricking the admin into accessing a URL with modified arguments to admin/admin.adm.php.

    Published: 13 Feb 2007
    7.5
    High

    CVE-2007-0906

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in PHP before 5.2.1 allow attackers to cause a denial of service and possibly execute arbitrary code via unspecified vectors in the (1) session, (2) zip, (3) imap, and (4) sqlite extensions; (5) stream filters; and the (6) str_replace, (7) mail, (8) ibase_delete_user, (9) ibase_add_user, and (10) ibase_modify_user functions. NOTE: vector 6 might actually be an integer overflow (CVE-2007-1885). NOTE: as of 20070411, vector (3) might involve the imap_mail_compose function (CVE-2007-1825).

    Published: 13 Feb 2007