CVE Feed

    Dashboard / CVE

    4.4
    Medium

    CVE-2007-0014

    Last Modified: 23 Apr 2026

    ChainKey Java Code Protection allows attackers to decompile Java class files via a Java class loader with a modified defineClass method that saves the bytecode to a file before it is passed to the JVM.

    Published: 17 Jan 2007
    6.6
    Medium

    CVE-2007-0267

    Last Modified: 23 Apr 2026

    The ufs_lookup function in the Mac OS X 10.4.8 and FreeBSD 6.1 kernels allows local users to cause a denial of service (kernel panic) and possibly corrupt other filesystems by mounting a crafted UNIX File System (UFS) DMG image that contains a corrupted directory entry (struct direct), related to the ufs_dirbad function. NOTE: a third party states that the FreeBSD issue does not cross privilege boundaries.

    Published: 17 Jan 2007
    6.8
    Medium

    CVE-2006-6936

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Xtreme ASP Photo Gallery allows remote attackers to inject arbitrary HTML or web script via (1) the catname parameter to displaypic.asp or (2) the search field. NOTE: vector 1 likely overlaps CVE-2006-3032.

    Published: 17 Jan 2007
    Unknown

    CVE-2007-0234

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-0243. Reason: This candidate is a duplicate of CVE-2007-0243. Notes: All CVE users should reference CVE-2007-0243 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 17 Jan 2007
    6.8
    Medium

    CVE-2007-0243

    Last Modified: 23 Apr 2026

    Buffer overflow in Sun JDK and Java Runtime Environment (JRE) 5.0 Update 9 and earlier, SDK and JRE 1.4.2_12 and earlier, and SDK and JRE 1.3.1_18 and earlier allows applets to gain privileges via a GIF image with a block with a 0 width field, which triggers memory corruption.

    Published: 17 Jan 2007
    7.5
    High

    CVE-2006-6935

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the login component in Portix-PHP 0.4.2 allows remote attackers to execute arbitrary SQL commands via the username and passwd (password) fields.

    Published: 16 Jan 2007
    6.8
    Medium

    CVE-2007-0249

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in Nwom topsites 3.0 allows remote attackers to inject arbitrary web script or HTML via the o parameter.

    Published: 16 Jan 2007
    5
    Medium

    CVE-2007-0250

    Last Modified: 23 Apr 2026

    index.php in Nwom topsites 3.0 allows remote attackers to obtain potentially sensitive information via a ' (quote) character in the o parameter, which forces a SQL error.

    Published: 16 Jan 2007
    10
    Critical

    CVE-2007-0254

    Last Modified: 23 Apr 2026

    Format string vulnerability in the errors_create_window function in errors.c in xine-ui allows attackers to execute arbitrary code via unknown vectors.

    Published: 16 Jan 2007
    7.8
    High

    CVE-2007-0256

    Last Modified: 23 Apr 2026

    VideoLAN VLC 0.8.6a allows remote attackers to cause a denial of service (application crash) via a crafted .wmv file.

    Published: 16 Jan 2007
    10
    Critical

    CVE-2007-0261

    Last Modified: 23 Apr 2026

    snews.php in sNews 1.5.30 and earlier does not properly exit when authentication fails, which allows remote attackers to perform unauthorized administrative actions, as demonstrated by changing an administrative password via the changeup task, and by uploading PHP code via the imagefile parameter.

    Published: 16 Jan 2007
    7.5
    High

    CVE-2007-0266

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in boxx/ShowAppendix.asp in Ezboxx Portal System Beta 0.7.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the iid parameter.

    Published: 16 Jan 2007
    5
    Medium

    CVE-2006-6931

    Last Modified: 23 Apr 2026

    Algorithmic complexity vulnerability in Snort before 2.6.1, during predicate evaluation in rule matching for certain rules, allows remote attackers to cause a denial of service (CPU consumption and detection outage) via crafted network traffic, aka a "backtracking attack."

    Published: 16 Jan 2007
    6.8
    Medium

    CVE-2006-6934

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Portix-PHP 0.4.2 allow remote attackers to inject arbitrary web script or HTML via the (1) titre or (2) auteur field in a forum post.

    Published: 16 Jan 2007
    7.2
    High

    CVE-2007-0253

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the grsecurity patch has unspecified impact and remote attack vectors, a different vulnerability than the expand_stack vulnerability from the Digital Armaments 20070110 pre-advisory. NOTE: the grsecurity developer has disputed this issue, stating that "the function they claim the vulnerability to be in is a trivial function, which can, and has been, easily checked for any supposed vulnerabilities." The developer also cites a past disclosure that was not proven

    Published: 16 Jan 2007
    7.8
    High

    CVE-2007-0259

    Last Modified: 23 Apr 2026

    Ezboxx Portal System Beta 0.7.6 and earlier allows remote attackers to obtain sensitive information via an invalid cat parameter to boxx/knowledgebase.asp, which reveals the path in an error message.

    Published: 16 Jan 2007
    7.5
    High

    CVE-2007-0260

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in index.php in Naig 0.5.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the this_path parameter. NOTE: a reliable third party disputes this vulnerability because this_path is defined before use

    Published: 16 Jan 2007
    6.6
    Medium

    CVE-2007-0264

    Last Modified: 23 Apr 2026

    Buffer overflow in Winzip32.exe in WinZip 9.0 allows local users to cause a denial of service (application crash) and possibly execute arbitrary code via a long command line argument. NOTE: this issue may cross privilege boundaries if an application automatically invokes Winzip32.exe for untrusted input filenames, as in the case of a file upload application. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 16 Jan 2007
    7.5
    High

    CVE-2006-6932

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Image Gallery with Access Database allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to (a) dispimage.asp, or the (2) order or (3) page parameter to (b) default.asp.

    Published: 16 Jan 2007
    7.8
    High

    CVE-2006-6933

    Last Modified: 23 Apr 2026

    Easy Chat Server 2.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download certain files via direct requests to files such as (1) ServerKey.pem and (2) AcceptIP.txt. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 16 Jan 2007
    7.5
    High

    CVE-2007-0252

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in easy-content filemanager allows remote attackers to upload or modify arbitrary files via unspecified vectors.

    Published: 16 Jan 2007
    9.3
    Critical

    CVE-2007-0255

    Last Modified: 23 Apr 2026

    XINE 0.99.4 allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a certain M3U file that contains a long #EXTINF line and contains format string specifiers in an invalid udp:// URI, possibly a variant of CVE-2007-0017.

    Published: 16 Jan 2007
    7.8
    High

    CVE-2007-0257

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the expand_stack function in grsecurity PaX allows local users to gain privileges via unspecified vectors. NOTE: the grsecurity developer has disputed this issue, stating that "the function they claim the vulnerability to be in is a trivial function, which can, and has been, easily checked for any supposed vulnerabilities." The developer also cites a past disclosure that was not proven. As of 20070120, the original researcher has released demonstration code

    Published: 16 Jan 2007
    7.1
    High

    CVE-2007-0263

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in Total Commander before 6.5.6 allows user-assisted remote attackers to delete arbitrary files and corrupt a filesystem via a crafted RAR file. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 16 Jan 2007
    6.8
    Medium

    CVE-2007-0265

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Ezboxx Portal System Beta 0.7.6 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the pic parameter to custom/piczoom.asp, (2) the nocatname parameter to boxx/user-upload.asp, or (3) the iid parameter to indexes/newscomments.asp.

    Published: 16 Jan 2007
    7.8
    High

    CVE-2007-0251

    Last Modified: 23 Apr 2026

    Integer underflow in the DecodeGRE function in src/decode.c in Snort 2.6.1.2 allows remote attackers to trigger dereferencing of certain memory locations via crafted GRE packets, which may cause corruption of log files or writing of sensitive information into log files.

    Published: 16 Jan 2007
    6.8
    Medium

    CVE-2007-0258

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in (1) Fastilo 2.0 and (2) Open Solution Quick.Cart 2.0 allows remote attackers to inject arbitrary web script or HTML via the p parameter. NOTE: some of these details are obtained from third party information.

    Published: 16 Jan 2007
    7.8
    High

    CVE-2007-0262

    Last Modified: 23 Apr 2026

    WordPress 2.0.6, and 2.1Alpha 3 (SVN:4662), does not properly verify that the m parameter value has the string data type, which allows remote attackers to obtain sensitive information via an invalid m[] parameter, as demonstrated by obtaining the path, and obtaining certain SQL information such as the table prefix.

    Published: 16 Jan 2007
    10
    Critical

    CVE-2006-5171

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the RPC interface in Mediasvr.exe in Computer Associates (CA) Brightstor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Protection Suites r2 allows remote attackers to execute arbitrary code via crafted SUNRPC packets, aka the "Mediasvr.exe Overflow," a different vulnerability than CVE-2006-5172.

    Published: 16 Jan 2007
    10
    Critical

    CVE-2006-5172

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the RPC interface in Mediasvr.exe in Computer Associates (CA) Brightstor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Protection Suites r2 allows remote attackers to execute arbitrary code via crafted SUNRPC packets, aka the "Mediasvr.exe String Handling Overflow," a different vulnerability than CVE-2006-5171.

    Published: 16 Jan 2007
    5.1
    Medium

    CVE-2006-6487

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in DT Guestbook (dt_guestbook) 1.0f, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the error[] parameter.

    Published: 16 Jan 2007
    7.5
    High

    CVE-2006-6767

    Last Modified: 23 Apr 2026

    oftpd before 0.3.7 allows remote attackers to cause a denial of service (daemon abort) via a (1) LPRT or (2) LPASV command with an unsupported address family, which triggers an assertion failure.

    Published: 16 Jan 2007
    7.8
    High

    CVE-2006-5876

    Last Modified: 23 Apr 2026

    The soup_headers_parse function in soup-headers.c for libsoup HTTP library before 2.2.99 allows remote attackers to cause a denial of service (crash) via malformed HTTP headers, probably involving missing fields or values.

    Published: 16 Jan 2007
    5
    Medium

    CVE-2007-0248

    Last Modified: 23 Apr 2026

    The aclMatchExternal function in Squid before 2.6.STABLE7 allows remote attackers to cause a denial of service (crash) by causing an external_acl queue overload, which triggers an infinite loop.

    Published: 16 Jan 2007
    10
    Critical

    CVE-2007-0236

    Last Modified: 23 Apr 2026

    Double free vulnerability in the _ATPsndrsp function in Apple Mac OS X 10.4.8, and possibly other versions, allows remote attackers to cause a denial of service (kernel panic) and possibly execute arbitrary code via a crafted AppleTalk request that triggers a heap-based buffer overflow.

    Published: 16 Jan 2007
    4.3
    Medium

    CVE-2007-6715

    Last Modified: 23 Apr 2026

    Mozilla Firefox allows remote attackers to cause a denial of service (crash) via crafted image, as demonstrated by the zzuf lol-firefox.gif test case.

    Published: 16 Jan 2007
    3.7
    Low

    CVE-2007-0235

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the glibtop_get_proc_map_s function in libgtop before 2.14.6 (libgtop2) allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a process with a long filename that is mapped in its address space, which triggers the overflow in gnome-system-monitor.

    Published: 14 Jan 2007
    5
    Medium

    CVE-2006-6924

    Last Modified: 23 Apr 2026

    bitweaver 1.3.1 and earlier allows remote attackers to obtain sensitive information via a sort_mode=-98 query string to (1) blogs/list_blogs.php, (2) fisheye/index.php, (3) wiki/orphan_pages.php, or (4) wiki/list_pages.php, which forces a SQL error. NOTE: the fisheye/list_galleries.php vector is already covered by CVE-2005-4380.

    Published: 13 Jan 2007
    6.8
    Medium

    CVE-2006-6925

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in bitweaver 1.3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the message title field when submitting an article to articles/edit.php, (2) the message title field when submitting a blog post to blogs/post.php, or (3) the message description field when editing in the Sandbox in wiki/edit.php.

    Published: 13 Jan 2007
    10
    Critical

    CVE-2006-6926

    Last Modified: 23 Apr 2026

    Buffer overflow in eXtremail 2.1 has unknown impact and attack vectors, as demonstrated by VulnDisco Pack. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 13 Jan 2007
    6.8
    Medium

    CVE-2006-6928

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Rialto 1.6 allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter to (a) listmain.asp or (b) searchmain.asp, the (2) the Keyword parameter to (c) searchkey.asp, or the (3) refno parameter to (d) forminfo.asp.

    Published: 13 Jan 2007
    7.5
    High

    CVE-2007-0223

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in shared/code/cp_functions_downloads.php in Nicola Asuni All In One Control Panel (AIOCP) before 1.3.009 allows remote attackers to execute arbitrary SQL commands via the download_category parameter.

    Published: 13 Jan 2007
    7.5
    High

    CVE-2007-0224

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in shopgiftregsearch.asp in VP-ASP Shopping Cart 6.09 and earlier allows remote attackers to execute arbitrary SQL commands via the LoginLastname parameter.

    Published: 13 Jan 2007
    6.8
    Medium

    CVE-2007-0225

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in shopcustadmin.asp in VP-ASP Shopping Cart 6.09 and earlier allows remote attackers to inject arbitrary web script or HTML via the msg parameter.

    Published: 13 Jan 2007
    7.5
    High

    CVE-2007-0226

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in wbsearch.aspx in uniForum 4 and earlier allows remote attackers to execute arbitrary SQL commands via the "by User" field (aka the TXbyuser parameter).

    Published: 13 Jan 2007
    6.8
    Medium

    CVE-2007-0231

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Movable Type (MT) 3.33, when nofollow is disabled and unmoderated comments are enabled, allows remote attackers to inject arbitrary web script or HTML via the Comments field.

    Published: 13 Jan 2007
    7.5
    High

    CVE-2007-0233

    Last Modified: 23 Apr 2026

    wp-trackback.php in WordPress 2.0.6 and earlier does not properly unset variables when the input data includes a numeric parameter with a value matching an alphanumeric parameter's hash value, which allows remote attackers to execute arbitrary SQL commands via the tb_id parameter. NOTE: it could be argued that this vulnerability is due to a bug in the unset PHP command (CVE-2006-3017) and the proper fix should be in PHP; if so, then this should not be treated as a vulnerability in WordPress.

    Published: 13 Jan 2007
    7.5
    High

    CVE-2006-6922

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in Deadlock User Management System (phpdeadlock) 0.64 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 13 Jan 2007
    7.5
    High

    CVE-2006-6923

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in newsletters/edition.php in bitweaver 1.3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the tk parameter.

    Published: 13 Jan 2007
    7.5
    High

    CVE-2006-6930

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in viewad.asp in Rapid Classified 3.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 13 Jan 2007