CVE Feed

    Dashboard / CVE

    9.3
    Critical

    CVE-2007-0766

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Remotesoft .NET Explorer 2.0.1 allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long line in a .cpp file.

    Published: 6 Feb 2007
    6.8
    Medium

    CVE-2007-0452

    Last Modified: 23 Apr 2026

    smbd in Samba 3.0.6 through 3.0.23d allows remote authenticated users to cause a denial of service (memory and CPU exhaustion) by renaming a file in a way that prevents a request from being removed from the deferred open queue, which triggers an infinite loop.

    Published: 5 Feb 2007
    6.6
    Medium

    CVE-2007-0556

    Last Modified: 23 Apr 2026

    The query planner in PostgreSQL before 8.0.11, 8.1 before 8.1.7, and 8.2 before 8.2.2 does not verify that a table is compatible with a "previously made query plan," which allows remote authenticated users to cause a denial of service (server crash) and possibly access database content via an "ALTER COLUMN TYPE" SQL statement, which can be leveraged to read arbitrary memory from the server.

    Published: 5 Feb 2007
    8.5
    High

    CVE-2007-0555

    Last Modified: 23 Apr 2026

    PostgreSQL 7.3 before 7.3.13, 7.4 before 7.4.16, 8.0 before 8.0.11, 8.1 before 8.1.7, and 8.2 before 8.2.2 allows attackers to disable certain checks for the data types of SQL function arguments, which allows remote authenticated users to cause a denial of service (server crash) and possibly access database content.

    Published: 5 Feb 2007
    7.5
    High

    CVE-2007-0699

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/includes.php in Guernion Sylvain Portail Web Php (aka Gsylvain35 Portail Web, PwP) before 2.5.1.1 allows remote attackers to execute arbitrary PHP code via a URL in the site_path parameter.

    Published: 4 Feb 2007
    5
    Medium

    CVE-2007-0700

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in Guernion Sylvain Portail Web Php (aka Gsylvain35 Portail Web, PwP) allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter. NOTE: this issue was later reported for 2.5.1.1.

    Published: 4 Feb 2007
    7.5
    High

    CVE-2007-0704

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in install.php in Somery 0.4.6 allows remote attackers to execute arbitrary PHP code via a URL in the skindir parameter, a different vector than CVE-2006-4669. NOTE: the documentation says to remove install.php after installation.

    Published: 4 Feb 2007
    7.5
    High

    CVE-2007-0705

    Last Modified: 23 Apr 2026

    Cross-zone scripting vulnerability in Sleipnir 2.49 and earlier, and Portable Sleipnir 2.45 and earlier, allows remote attackers to bypass Web content zone restrictions via certain script contained in RSS data. NOTE: some of these details are obtained from third party information.

    Published: 4 Feb 2007
    7.5
    High

    CVE-2007-0706

    Last Modified: 23 Apr 2026

    Cross-zone scripting vulnerability in Darksky RSS bar for Internet Explorer before 1.29, RSS bar for Sleipnir before 1.29, and RSS bar for unDonut before 1.29 allows remote attackers to bypass Web content zone restrictions via certain script contained in RSS data. NOTE: some of these details are obtained from third party information.

    Published: 4 Feb 2007
    6.8
    Medium

    CVE-2007-0707

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in GOM Player 2.0.12.3375 allows user-assisted remote attackers to execute arbitrary code via a .ASX file with a long URI in the "ref href" tag. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 4 Feb 2007
    7.2
    High

    CVE-2007-0708

    Last Modified: 23 Apr 2026

    cmdmon.sys in Comodo Firewall Pro (formerly Comodo Personal Firewall) before 2.4.16.174 does not validate arguments that originate in user mode for the (1) NtConnectPort and (2) NtCreatePort hooked SSDT functions, which allows local users to cause a denial of service (system crash) and possibly gain privileges via invalid arguments.

    Published: 4 Feb 2007
    Unknown

    CVE-2006-6967

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). In addition, it describes standard behavior (publication of revocation lists) and as such does not cross privilege boundaries. Notes: the former description is: "Check Point FireWall-1 allows remote attackers to obtain certificate revocation lists (CRLs) and other unspecified sensitive information via an HTTP request for the top-level URI on the internal certificate authority (ICA) port (18264/tcp).

    Published: 4 Feb 2007
    7.5
    High

    CVE-2007-0702

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in phpEventMan 1.0.2 allow remote attackers to execute arbitrary PHP code via a URL in the level parameter to (1) Shared/controller/text.ctrl.php or (2) UserMan/controller/common.function.php.

    Published: 4 Feb 2007
    7.5
    High

    CVE-2006-6966

    Last Modified: 23 Apr 2026

    phpGraphy before 0.9.13a does not properly unset variables when the input data includes a numeric parameter with a value matching an alphanumeric parameter's hash value, which allows remote attackers to execute arbitrary PHP code by uploading a config.php file via the pictures[] parameter to index.php. NOTE: it could be argued that this vulnerability is due to a bug in the unset PHP command (CVE-2006-3017) and the proper fix should be in PHP; if so, then this should not be treated as a vulnerability in phpGraphy.

    Published: 4 Feb 2007
    4.6
    Medium

    CVE-2007-0436

    Last Modified: 23 Apr 2026

    Barron McCann X-Kryptor Driver BMS1446HRR (Xgntr BMS1351 Install BMS1472) in X-Kryptor Secure Client does not drop privileges when launching an Explorer window in response to a help command, which allows local users to gain LocalSystem privileges via interactive use of Explorer.

    Published: 4 Feb 2007
    7.5
    High

    CVE-2007-0703

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in library/StageLoader.php in WebBuilder 2.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[core][module_path] parameter.

    Published: 4 Feb 2007
    7.2
    High

    CVE-2007-0709

    Last Modified: 23 Apr 2026

    cmdmon.sys in Comodo Firewall Pro (formerly Comodo Personal Firewall) 2.4.16.174 and earlier does not validate arguments that originate in user mode for the (1) NtCreateSection, (2) NtOpenProcess, (3) NtOpenSection, (4) NtOpenThread, and (5) NtSetValueKey hooked SSDT functions, which allows local users to cause a denial of service (system crash) and possibly gain privileges via invalid arguments.

    Published: 4 Feb 2007
    7.5
    High

    CVE-2007-0701

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in inc/common.inc.php in Epistemon 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the inc_path parameter.

    Published: 4 Feb 2007
    4.4
    Medium

    CVE-2007-0475

    Last Modified: 23 Apr 2026

    Multiple stack-based buffer overflows in utilities/smb4k_*.cpp in Smb4K before 0.8.0 allow local users, when present on the Smb4K sudoers list, to gain privileges via unspecified vectors related to the args variable and unspecified other variables, in conjunction with the sudo configuration.

    Published: 3 Feb 2007
    3.7
    Low

    CVE-2007-0472

    Last Modified: 23 Apr 2026

    Multiple race conditions in Smb4K before 0.8.0 allow local users to (1) modify arbitrary files via unspecified manipulations of Smb4K's lock file, which is not properly handled by the remove_lock_file function in core/smb4kfileio.cpp, and (2) add lines to the sudoers file via a symlink attack on temporary files, which isn't properly handled by the writeFile function in core/smb4kfileio.cpp.

    Published: 3 Feb 2007
    1.9
    Low

    CVE-2007-0473

    Last Modified: 23 Apr 2026

    The writeFile function in core/smb4kfileio.cpp in Smb4K before 0.8.0 does not preserve /etc/sudoers permissions across modifications, which allows local users to obtain sensitive information (/etc/sudoers contents) by reading this file.

    Published: 3 Feb 2007
    3.3
    Low

    CVE-2007-0474

    Last Modified: 23 Apr 2026

    Smb4K before 0.8.0 allow local users, when present on the Smb4K sudoers list, to kill arbitrary processes, related to a "design issue with smb4k_kill."

    Published: 3 Feb 2007
    6.8
    Medium

    CVE-2007-0698

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in ACGVannu 1.3 and earlier allow remote attackers to execute arbitrary SQL commands via the id_mod parameter to templates/modif.html, and other unspecified vectors. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 3 Feb 2007
    6.8
    Medium

    CVE-2007-0696

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in error messages in Free LAN In(tra|ter)net Portal (FLIP) before 1.0-RC3 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters, different vectors than CVE-2007-0611.

    Published: 3 Feb 2007
    6.4
    Medium

    CVE-2007-0697

    Last Modified: 23 Apr 2026

    index2.php in ACGVannu 1.3 and earlier allows remote attackers to change the password or profile of a user via a modified id parameter, related to templates/modif.html. NOTE: some of these details are obtained from third party information.

    Published: 3 Feb 2007
    7.5
    High

    CVE-2007-0695

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Free LAN In(tra|ter)net Portal (FLIP) before 1.0-RC3 allow remote attackers to execute arbitrary SQL commands via unspecified vectors. NOTE: some sources mention the escape_sqlData, implode_sql, and implode_sqlIn functions, but these are protection schemes, not the vulnerable functions.

    Published: 3 Feb 2007
    6.8
    Medium

    CVE-2007-0676

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in faq.php in ExoPHPDesk 1.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 3 Feb 2007
    7.5
    High

    CVE-2007-0677

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in fw/class.Quick_Config_Browser.php in Cadre PHP Framework 20020724 allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[config][framework_path] parameter.

    Published: 3 Feb 2007
    7.5
    High

    CVE-2007-0679

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in lang/leslangues.php in Nicolas Grandjean PHPMyRing 4.1.3b and earlier allows remote attackers to execute arbitrary PHP code via a URL in the fichier parameter.

    Published: 3 Feb 2007
    7.5
    High

    CVE-2007-0680

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/functions.php in Phpbb Tweaked 3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.

    Published: 3 Feb 2007
    9.8
    Critical

    CVE-2007-0681

    Last Modified: 23 Apr 2026

    profile.php in ExtCalendar 2 and earlier allows remote attackers to change the passwords of arbitrary users without providing the original password, and possibly perform other unauthorized actions, via modified values to register.php.

    Published: 3 Feb 2007
    2.6
    Low

    CVE-2007-0685

    Last Modified: 23 Apr 2026

    Internet Explorer on Windows Mobile 5.0 and Windows Mobile 2003 and 2003SE for Smartphones and PocketPC allows attackers to cause a denial of service (application crash and device instability) via unspecified vectors, possibly related to a buffer overflow.

    Published: 3 Feb 2007
    6.5
    Medium

    CVE-2007-0687

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in i-search.php in Michelle's L2J Dropcalc 4 and earlier allows remote authenticated users to execute arbitrary SQL commands via the itemid parameter.

    Published: 3 Feb 2007
    7.5
    High

    CVE-2007-0688

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in oku.asp in Hunkaray Duyuru Scripti allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 3 Feb 2007
    8.8
    High

    CVE-2007-0671

    Last Modified: 22 Apr 2026

    Unspecified vulnerability in Microsoft Excel 2000, XP, 2003, and 2004 for Mac, and possibly other Office products, allows remote user-assisted attackers to execute arbitrary code via unknown attack vectors, as demonstrated by Exploit-MSExcel.h in targeted zero-day attacks.

    Published: 3 Feb 2007
    7.8
    High

    CVE-2007-0672

    Last Modified: 23 Apr 2026

    LGSERVER.EXE in BrightStor Mobile Backup 4.0 allows remote attackers to cause a denial of service (disk consumption and daemon hang) via a value of 0xFFFFFF7F at a certain point in an authentication negotiation packet, which writes a large amount of data to a .USX file in CA_BABLDdata\Server\data\transfer\.

    Published: 3 Feb 2007
    7.8
    High

    CVE-2007-0673

    Last Modified: 23 Apr 2026

    LGSERVER.EXE in BrightStor ARCserve Backup for Laptops & Desktops r11.1 allows remote attackers to cause a denial of service (daemon crash) via a value of 0xFFFFFFFF at a certain point in an authentication negotiation packet, which results in an out-of-bounds read.

    Published: 3 Feb 2007
    7.1
    High

    CVE-2007-0674

    Last Modified: 23 Apr 2026

    Pictures and Videos on Windows Mobile 5.0 and Windows Mobile 2003 and 2003SE for Smartphones and PocketPC allows user-assisted remote attackers to cause a denial of service (device hang) via a malformed JPEG file.

    Published: 3 Feb 2007
    7.6
    High

    CVE-2007-0675

    Last Modified: 23 Apr 2026

    A certain ActiveX control in sapi.dll (aka the Speech API) in Speech Components in Microsoft Windows Vista, when the Speech Recognition feature is enabled, allows user-assisted remote attackers to delete arbitrary files, and conduct other unauthorized activities, via a web page with an embedded sound object that contains voice commands to an enabled microphone, allowing for interaction with Windows Explorer.

    Published: 3 Feb 2007
    7.5
    High

    CVE-2007-0683

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/functions.php in Omegaboard 1.0beta4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.

    Published: 3 Feb 2007
    7.5
    High

    CVE-2007-0684

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in portal.php in Cerulean Portal System 0.7b allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.

    Published: 3 Feb 2007
    7.1
    High

    CVE-2007-0686

    Last Modified: 23 Apr 2026

    The Intel 2200BG 802.11 Wireless Mini-PCI driver 9.0.3.9 (w29n51.sys) allows remote attackers to cause a denial of service (system crash) via crafted disassociation packets, which triggers memory corruption of "internal kernel structures," a different vulnerability than CVE-2006-6651. NOTE: this issue might overlap CVE-2006-3992.

    Published: 3 Feb 2007
    7.5
    High

    CVE-2007-0678

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in windows.asp in Fullaspsite Asp Hosting Sitesi allows remote attackers to execute arbitrary SQL commands via the kategori_id parameter.

    Published: 3 Feb 2007
    7.5
    High

    CVE-2007-0682

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in theme/include_mode/template.php in JV2 Folder Gallery 3.0.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the galleryfilesdir parameter.

    Published: 3 Feb 2007
    4.6
    Medium

    CVE-2007-0670

    Last Modified: 23 Apr 2026

    Buffer overflow in bos.rte.libc in IBM AIX 5.2 and 5.3 allows local users to execute arbitrary code via the "r-commands", possibly including (1) rdist, (2) rsh, (3) rcp, (4) rsync, and (5) rlogin.

    Published: 3 Feb 2007
    6.5
    Medium

    CVE-2007-0667

    Last Modified: 23 Apr 2026

    The redirect function in Form.pm for (1) LedgerSMB before 1.1.5 and (2) SQL-Ledger allows remote authenticated users to execute arbitrary code via redirects, related to callbacks, a different issue than CVE-2006-5872.

    Published: 2 Feb 2007
    6.8
    Medium

    CVE-2007-0665

    Last Modified: 23 Apr 2026

    Format string vulnerability in the SCP module in Ipswitch WS_FTP 2007 Professional might allow remote attackers to execute arbitrary commands via format string specifiers in the filename, related to the SHELL WS_FTP script command.

    Published: 2 Feb 2007
    6.8
    Medium

    CVE-2007-0666

    Last Modified: 23 Apr 2026

    Ipswitch WS_FTP Server 5.04 allows FTP site administrators to execute arbitrary code on the system via a long input string to the (1) iFTPAddU or (2) iFTPAddH file, or to a (3) edition module.

    Published: 2 Feb 2007
    6.2
    Medium

    CVE-2007-0668

    Last Modified: 23 Apr 2026

    The Loopback Filesystem (LOFS) in Sun Solaris 10 allows local users in a non-global zone to move and rename files in a read-only filesystem, which could lead to a denial of service.

    Published: 2 Feb 2007
    5
    Medium

    CVE-2007-4601

    Last Modified: 23 Apr 2026

    A regression error in tcp-wrappers 7.6.dbs-10 and 7.6.dbs-11 might allow remote attackers to bypass intended access restrictions when a service uses libwrap but does not specify server connection information.

    Published: 2 Feb 2007