CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2007-0855

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in RARLabs Unrar, as packaged in WinRAR and possibly other products, allows user-assisted remote attackers to execute arbitrary code via a crafted, password-protected archive.

    Published: 8 Feb 2007
    7.5
    High

    CVE-2006-6979

    Last Modified: 23 Apr 2026

    The ruby handlers in the Magnatune component in Amarok do not properly quote text in certain contexts, probably including construction of an unzip command line, which allows attackers to execute arbitrary commands via shell metacharacters.

    Published: 8 Feb 2007
    2.6
    Low

    CVE-2006-6980

    Last Modified: 23 Apr 2026

    The magnatune.com album browser in Amarok allows attackers to cause a denial of service (application crash) via unspecified vectors.

    Published: 8 Feb 2007
    5
    Medium

    CVE-2006-6982

    Last Modified: 23 Apr 2026

    3proxy 0.5 to 0.5.2 does not offer NTLM authentication before basic authentication, which might cause browsers with incomplete RFC2616/RFC2617 support to use basic cleartext authentication even if NTLM is available, which makes it easier for attackers to steal credentials.

    Published: 8 Feb 2007
    7.5
    High

    CVE-2007-0845

    Last Modified: 23 Apr 2026

    admin/index.php in Advanced Poll 2.0.0 through 2.0.5-dev allows remote attackers to bypass authentication and gain administrator privileges by obtaining a valid session identifier and setting the uid parameter to 1.

    Published: 8 Feb 2007
    9.3
    Critical

    CVE-2007-0851

    Last Modified: 23 Apr 2026

    Buffer overflow in the Trend Micro Scan Engine 8.000 and 8.300 before virus pattern file 4.245.00, as used in other products such as Cyber Clean Center (CCC) Cleaner, allows remote attackers to execute arbitrary code via a malformed UPX compressed executable.

    Published: 8 Feb 2007
    6.8
    Medium

    CVE-2007-0852

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in DevTrack 6.x allows remote attackers to inject arbitrary web script or HTML via the "Keyword search" form field and unspecified other form fields that populate a public saved query. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 8 Feb 2007
    7.5
    High

    CVE-2007-0853

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in DevTrack 6.0.3 allows remote attackers to execute arbitrary SQL commands via the Username form field. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 8 Feb 2007
    7.5
    High

    CVE-2007-0854

    Last Modified: 23 Apr 2026

    Remote file inclusion vulnerability in scripts2/objcache in cPanel WebHost Manager (WHM) allows remote attackers to execute arbitrary code via a URL in the obj parameter. NOTE: a third party claims that this issue is not file inclusion because the contents are not parsed, but the attack can be used to overwrite files in /var/cpanel/objcache or provide unexpected web page contents.

    Published: 8 Feb 2007
    7.2
    High

    CVE-2007-0856

    Last Modified: 23 Apr 2026

    TmComm.sys 1.5.0.1052 in the Trend Micro Anti-Rootkit Common Module (RCM), with the VsapiNI.sys 3.320.0.1003 scan engine, as used in Trend Micro PC-cillin Internet Security 2007, Antivirus 2007, Anti-Spyware for SMB 3.2 SP1, Anti-Spyware for Consumer 3.5, Anti-Spyware for Enterprise 3.0 SP2, Client / Server / Messaging Security for SMB 3.5, Damage Cleanup Services 3.2, and possibly other products, assigns Everyone write permission for the \\.\TmComm DOS device interface, which allows local users to access privileged IOCTLs and execute arbitrary code or overwrite arbitrary memory in the kernel context.

    Published: 8 Feb 2007
    4.3
    Medium

    CVE-2007-0857

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in MoinMoin before 1.5.7 allow remote attackers to inject arbitrary web script or HTML via (1) the page info, or the page name in a (2) AttachFile, (3) RenamePage, or (4) LocalSiteMap action.

    Published: 8 Feb 2007
    7.2
    High

    CVE-2007-0819

    Last Modified: 23 Apr 2026

    HP Network Node Manager (NNM) Remote Console 7.50, 7.51, and 7.53 assigns Everyone Full Control permission for the %PROGRAMFILES%\HP OpenView directory tree, which allows local users to gain privileges via a Trojan horse executable file or ActiveX component, or a modified bin\ovtrcsvc.exe for the HP Open View Shared Trace Service.

    Published: 8 Feb 2007
    5
    Medium

    CVE-2006-2220

    Last Modified: 23 Apr 2026

    phpBB 2.0.20 does not properly verify user-specified input variables used as limits to SQL queries, which allows remote attackers to obtain sensitive information via a negative LIMIT specification, as demonstrated by the start parameter to memberlist.php, which reveals the SQL query in the resulting error message.

    Published: 8 Feb 2007
    7.5
    High

    CVE-2006-6976

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in centipaid_class.php in CentiPaid 1.4.2 and earlier allows remote attackers to execute arbitrary code via a URL in the absolute_path parameter.

    Published: 8 Feb 2007
    4.3
    Medium

    CVE-2006-6977

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the "Basic Toolbar Selection" in FreeTextBox allows remote attackers to execute arbitrary JavaScript via the javascript: URI in the (1) href or (2) onmouseover attribute of the A HTML tag.

    Published: 8 Feb 2007
    4.3
    Medium

    CVE-2006-6978

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the "Basic Toolbar Selection" in FCKEditor allows remote attackers to execute arbitrary JavaScript via the javascript: URI in the (1) href or (2) onmouseover attribute of the A HTML tag.

    Published: 8 Feb 2007
    5
    Medium

    CVE-2006-2219

    Last Modified: 23 Apr 2026

    phpBB 2.0.20 does not verify user-specified input variable types before being passed to type-dependent functions, which allows remote attackers to obtain sensitive information, as demonstrated by the (1) mode parameter to memberlist.php and the (2) highlight parameter to viewtopic.php that are used as an argument to the htmlspecialchars or urlencode functions, which displays the installation path in the resulting error message.

    Published: 8 Feb 2007
    9.8
    Critical

    CVE-2006-6975

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in centipaid_class.php in CentiPaid 1.4.3 allows remote attackers to execute arbitrary code via a URL in the class_pwd parameter. NOTE: this issue has been disputed by CVE and multiple third parties, who state that $class_pwd is set to a static value before the relevant include statement

    Published: 8 Feb 2007
    6.8
    Medium

    CVE-2007-0840

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in HLstats before 1.35 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in the search class. NOTE: it is possible that this issue overlaps CVE-2006-4543.3 or CVE-2006-4454.

    Published: 8 Feb 2007
    10
    Critical

    CVE-2007-0841

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in vbDrupal before 4.7.6.0 have unknown impact and remote attack vectors. NOTE: the vector related to Drupal is covered by CVE-2007-0626. These vulnerabilities might be associated with other CVE identifiers.

    Published: 8 Feb 2007
    6.5
    Medium

    CVE-2007-0835

    Last Modified: 23 Apr 2026

    admin.php in Coppermine Photo Gallery 1.4.10, and possibly earlier, allows remote authenticated users to execute arbitrary shell commands via shell metacharacters (";" semicolon) in the "Command line options for ImageMagick" form field, when used as an option to ImageMagick's convert command. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 8 Feb 2007
    7.5
    High

    CVE-2007-0839

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in index/index_album.php in Valarsoft WebMatic 2.6 allow remote attackers to execute arbitrary PHP code via a URL in the (1) P_LIB and (2) P_INDEX parameters.

    Published: 8 Feb 2007
    7.5
    High

    CVE-2007-0837

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in examples/inc/top.inc.php in AgerMenu 0.03 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the rootdir parameter.

    Published: 8 Feb 2007
    5
    Medium

    CVE-2007-0838

    Last Modified: 23 Apr 2026

    FreeProxy before 3.92 Build 1626 allows malicious users to cause a denial of service (infinite loop) via a HOST: header with a hostname and port number that refers to the server itself.

    Published: 8 Feb 2007
    4.3
    Medium

    CVE-2011-1340

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in skins/plone_templates/default_error_message.pt in Plone before 2.5.3 allows remote attackers to inject arbitrary web script or HTML via the type_name parameter to Members/ipa/createObject.

    Published: 8 Feb 2007
    4
    Medium

    CVE-2007-0836

    Last Modified: 23 Apr 2026

    admin.php in Coppermine Photo Gallery 1.4.10, and possibly earlier, allows remote authenticated users to include arbitrary local and possibly remote files via the (1) "Path to custom header include" and (2) "Path to custom footer include" form fields. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 8 Feb 2007
    9.3
    Critical

    CVE-2007-1536

    Last Modified: 23 Apr 2026

    Integer underflow in the file_printf function in the "file" program before 4.20 allows user-assisted attackers to execute arbitrary code via a file that triggers a heap-based buffer overflow.

    Published: 8 Feb 2007
    4.3
    Medium

    CVE-2007-5947

    Last Modified: 23 Apr 2026

    The jar protocol handler in Mozilla Firefox before 2.0.0.10 and SeaMonkey before 1.1.7 retrieves the inner URL regardless of its MIME type, and considers HTML documents within a jar archive to have the same origin as the inner URL, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a jar: URI.

    Published: 8 Feb 2007
    6.8
    Medium

    CVE-2007-0834

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in FlashChat 4.7.8 allows remote attackers to inject arbitrary web script or HTML via the user name field when the user joins a chat room, a different vulnerability than CVE-2007-0807. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 7 Feb 2007
    7.5
    High

    CVE-2007-0824

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in inhalt.php in LightRO CMS 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the dateien[news] parameter.

    Published: 7 Feb 2007
    7.8
    High

    CVE-2007-0825

    Last Modified: 23 Apr 2026

    FlashFXP 3.4.0 build 1145 allows remote servers to cause a denial of service (CPU consumption) via a response to a PWD command that contains a long string with deeply nested directory structure, possibly due to a buffer overflow.

    Published: 7 Feb 2007
    7.5
    High

    CVE-2007-0826

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in forum.asp in Kisisel Site 2007 allows remote attackers to execute arbitrary SQL commands via the forumid parameter.

    Published: 7 Feb 2007
    6.8
    Medium

    CVE-2007-0827

    Last Modified: 23 Apr 2026

    The Alibaba Alipay PTA Module ActiveX control (PTA.DLL) allows remote attackers to execute arbitrary code via a JavaScript function that invokes the Remove method with an invalid index argument, which is used as an offset for a function call.

    Published: 7 Feb 2007
    1.2
    Low

    CVE-2007-0833

    Last Modified: 23 Apr 2026

    VMware Workstation 5.5.3 34685, when the "Enable copy and paste to and from this virtual machine" option is enabled, preserves clipboard data on the guest operating system after it was deleted on the host operating system, which might allow local users to read clipboard contents by moving the focus back to the host operating system.

    Published: 7 Feb 2007
    1.2
    Low

    CVE-2007-0832

    Last Modified: 23 Apr 2026

    VMware Workstation 5.5.3 34685 does not immediately change the availability of a shared clipboard when the "Enable copy and paste to and from this virtual machine" checkbox is changed, which allows local users to obtain sensitive information or conduct certain attacks that are facilitated by weaker isolation between the host and guest operating systems.

    Published: 7 Feb 2007
    7.5
    High

    CVE-2007-0828

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in affichearticles.php3 in MySQLNewsEngine allows remote attackers to execute arbitrary PHP code via a URL in the newsenginedir parameter.

    Published: 7 Feb 2007
    4.4
    Medium

    CVE-2007-0829

    Last Modified: 23 Apr 2026

    avast! Server Edition before 4.7.726 does not demand a password in a certain intended context, even when a password has been set, which allows local users to bypass authentication requirements.

    Published: 7 Feb 2007
    3.5
    Low

    CVE-2007-0830

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in the Admin Control Panel (AdminCP) in Jelsoft vBulletin 3.6.4 allow remote authenticated administrators to inject arbitrary web script or HTML via unspecified vectors related to the (1) User Group Manager, (2) User Rank Manager, (3) User Title Manager, (4) BB Code Manager, (5) Attachment Manager, (6) Calendar Manager, and (7) Forums & Moderators functions. NOTE: the vendor disputes this issue, stating that modifying HTML is an intended privilege of an administrator. NOTE: it is possible that this issue overlaps CVE-2006-6040

    Published: 7 Feb 2007
    7.5
    High

    CVE-2007-0831

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Atsphp 5.0.1 allow remote attackers to execute arbitrary PHP code via a URL in the CONF[path] parameter to (1) index.php, (2) sources/usercp.php, or (3) sources/admin.php. NOTE: Another researcher has disputed this vulnerability, noting that CONF[path] is defined before use in index.php, that CONF[path] inclusion cannot occur through a direct request to other affected files, and that usercp.php is a typo of user_cp.php

    Published: 7 Feb 2007
    7.5
    High

    CVE-2006-6974

    Last Modified: 23 Apr 2026

    Headstart Solutions DeskPRO stores sensitive information under the web root with insufficient access control, which allows remote attackers to (1) list files in the includes/ directory; obtain the SQL username and password via a direct request for (2) config.php and (3) config.php.bak in includes/; read files in (4) email/, (5) admin/graphs/, (6) includes/javascript/, and (7) certain other includes/ directories via direct requests; and download SQL database data via direct requests for (8) data.sql, (9) install.sql, (10) settings.sql, and possibly other files in install/v2data/.

    Published: 7 Feb 2007
    7.5
    High

    CVE-2006-6972

    Last Modified: 23 Apr 2026

    SQL injection in torrents.php in BtitTracker 1.3.2 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) by and (2) order parameters. NOTE: it is not clear whether this issue is exploitable.

    Published: 7 Feb 2007
    7.5
    High

    CVE-2006-6973

    Last Modified: 23 Apr 2026

    Headstart Solutions DeskPRO does not require authentication for certain files and directories associated with administrative activities, which allows remote attackers to (1) reinstall the application via a direct request for install/index.php; (2) delete the database via a do=delete_database QUERY_STRING to a renamed copy of install/index.php; or access the administration system, after guessing a filename, via a direct request for a file in (3) admin/ or (4) tech/.

    Published: 7 Feb 2007
    7.5
    High

    CVE-2007-0820

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Cedric CLAIRE PortailPhp 2 allow remote attackers to execute arbitrary PHP code via a URL in the chemin parameter to (1) mod_news/index.php, (2) mod_news/goodies.php, or (3) mod_search/index.php. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 7 Feb 2007
    5
    Medium

    CVE-2007-0821

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in Cedric CLAIRE PortailPhp 2 allow remote attackers to read arbitrary files via a .. (dot dot) in the chemin parameter to (1) mod_news/index.php or (2) mod_news/goodies.php. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 7 Feb 2007
    1.9
    Low

    CVE-2007-0822

    Last Modified: 23 Apr 2026

    umount, when running with the Linux 2.6.15 kernel on Slackware Linux 10.2, allows local users to trigger a NULL dereference and application crash by invoking the program with a pathname for a USB pen drive that was mounted and then physically removed, which might allow the users to obtain sensitive information, including core file contents.

    Published: 7 Feb 2007
    1.9
    Low

    CVE-2007-0823

    Last Modified: 23 Apr 2026

    xterm on Slackware Linux 10.2 stores information that had been displayed for a different user account using the same xterm process, which might allow local users to bypass file permissions and read other users' files, or obtain other sensitive information, by reading the xterm process memory. NOTE: it could be argued that this is an expected consequence of multiple users sharing the same interactive process, in which case this is not a vulnerability.

    Published: 7 Feb 2007
    5
    Medium

    CVE-2006-6971

    Last Modified: 23 Apr 2026

    Mozilla Firefox 2.0, possibly only when running on Windows, allows remote attackers to bypass the Phishing Protection mechanism by representing an IP address in (1) dotted-hex, (2) dotted-octal, (3) single decimal integer, (4) single hex integer, or (5) single octal integer format, which is not captured by the blacklist filter.

    Published: 7 Feb 2007
    4.3
    Medium

    CVE-2007-0800

    Last Modified: 23 Apr 2026

    Cross-zone vulnerability in Mozilla Firefox 1.5.0.9 considers blocked popups to have an internal zone origin, which allows user-assisted remote attackers to cross zone restrictions and read arbitrary file:// URIs by convincing a user to show a blocked popup.

    Published: 7 Feb 2007
    4.3
    Medium

    CVE-2007-0801

    Last Modified: 23 Apr 2026

    The nsExternalAppHandler::SetUpTempFile function in Mozilla Firefox 1.5.0.9 creates temporary files with predictable filenames based on creation time, which allows remote attackers to execute arbitrary web script or HTML via a crafted XMLHttpRequest.

    Published: 7 Feb 2007
    6.4
    Medium

    CVE-2007-0802

    Last Modified: 23 Apr 2026

    Mozilla Firefox 2.0.0.1 allows remote attackers to bypass the Phishing Protection mechanism by adding certain characters to the end of the domain name, as demonstrated by the "." and "/" characters, which is not caught by the Phishing List blacklist filter.

    Published: 7 Feb 2007