CVE Feed

    Dashboard / CVE

    7.6
    High

    CVE-2007-0180

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in EF Commander 5.75 allows user-assisted attackers to execute arbitrary code via a crafted ISO file containing a file within several nested directories, which produces a large filename that triggers the overflow.

    Published: 11 Jan 2007
    7.5
    High

    CVE-2007-0167

    Last Modified: 23 Apr 2026

    Multiple PHP file inclusion vulnerabilities in WGS-PPC (aka PPC Search Engine), as distributed with other aliases, allow remote attackers to execute arbitrary PHP code via a URL in the INC parameter in (1) config_admin.php, (2) config_main.php, (3) config_member.php, and (4) mysql_config.php in config/; (5) admin.php and (6) index.php in admini/; (7) paypalipn/ipnprocess.php; (8) index.php and (9) registration.php in members/; and (10) ppcbannerclick.php and (11) ppcclick.php in main/.

    Published: 10 Jan 2007
    6.4
    Medium

    CVE-2007-0159

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the GeoIP_update_database_general function in libGeoIP/GeoIPUpdate.c in GeoIP 1.4.0 allows remote malicious update servers (possibly only update.maxmind.com) to overwrite arbitrary files via a .. (dot dot) in the database filename, which is returned by a request to app/update_getfilename.

    Published: 10 Jan 2007
    7.8
    High

    CVE-2007-0165

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in libnsl in Sun Solaris 8 and 9 allows remote attackers to cause a denial of service (crash) via malformed RPC requests that trigger a crash in rpcbind.

    Published: 10 Jan 2007
    2.1
    Low

    CVE-2007-0010

    Last Modified: 23 Apr 2026

    The GdkPixbufLoader function in GIMP ToolKit (GTK+) in GTK 2 (gtk2) before 2.4.13 allows context-dependent attackers to cause a denial of service (crash) via a malformed image file.

    Published: 10 Jan 2007
    7.5
    High

    CVE-2007-0160

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the LiveJournal support (hooks/ljhook.cc) in CenterICQ 4.9.11 through 4.21.0, when using unofficial LiveJournal servers, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by adding the victim as a friend and using long (1) username and (2) real name strings.

    Published: 10 Jan 2007
    4.1
    Medium

    CVE-2007-0161

    Last Modified: 23 Apr 2026

    The PML Driver HPZ12 (HPZipm12.exe) in the HP all-in-one drivers, as used by multiple HP products, uses insecure SERVICE_CHANGE_CONFIG DACL permissions, which allows local users to gain privileges and execute arbitrary programs, as demonstrated by modifying the binpath argument, a related issue to CVE-2006-0023.

    Published: 10 Jan 2007
    6.8
    Medium

    CVE-2007-0162

    Last Modified: 23 Apr 2026

    Unsanity Application Enhancer (APE) 2.0.2 installs with insecure permissions for the (1) ApplicationEnhancer binary and the (2) /Library/Frameworks/ApplicationEnhancer.framework directory, which allows local users to gain privileges by modifying or replacing the binary or library files.

    Published: 10 Jan 2007
    7.8
    High

    CVE-2007-0164

    Last Modified: 23 Apr 2026

    Camouflage 1.2.1 embeds password information in the carrier file, which allows remote attackers to bypass authentication requirements and decrypt embedded steganography by replacing certain bytes of the JPEG image with alternate password information.

    Published: 10 Jan 2007
    7.8
    High

    CVE-2007-0163

    Last Modified: 23 Apr 2026

    SecureKit Steganography 1.7.1 and 1.8 embeds password information in the carrier file, which allows remote attackers to bypass authentication requirements and decrypt embedded steganography by replacing the last 20 bytes of the JPEG image with alternate password information.

    Published: 10 Jan 2007
    9.3
    Critical

    CVE-2007-0029

    Last Modified: 23 Apr 2026

    Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2004 for Mac, and v.X for Mac allows user-assisted remote attackers to execute arbitrary code via a malformed string, aka "Excel Malformed String Vulnerability."

    Published: 9 Jan 2007
    9.3
    Critical

    CVE-2007-0030

    Last Modified: 23 Apr 2026

    Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2004 for Mac, and v.X for Mac allows user-assisted remote attackers to execute arbitrary code via an Excel file with an out-of-range Column field in certain BIFF8 record types, which references arbitrary memory.

    Published: 9 Jan 2007
    9.3
    Critical

    CVE-2007-0034

    Last Modified: 23 Apr 2026

    Buffer overflow in the Advanced Search (Finder.exe) feature of Microsoft Outlook 2000, 2002, and 2003 allows user-assisted remote attackers to execute arbitrary code via a crafted Outlook Saved Searches (OSS) file that triggers memory corruption, aka "Microsoft Outlook Advanced Find Vulnerability."

    Published: 9 Jan 2007
    9.3
    Critical

    CVE-2007-0028

    Last Modified: 23 Apr 2026

    Microsoft Excel 2000, 2002, 2003, Viewer 2003, Office 2004 for Mac, and Office v.X for Mac does not properly handle certain opcodes, which allows user-assisted remote attackers to execute arbitrary code via a crafted XLS file, which results in an "Improper Memory Access Vulnerability." NOTE: an early disclosure of this issue used CVE-2006-3432, but only CVE-2007-0028 should be used.

    Published: 9 Jan 2007
    9.3
    Critical

    CVE-2007-0031

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2004 for Mac, and v.X for Mac allows user-assisted remote attackers to execute arbitrary code via a BIFF8 spreadsheet with a PALETTE record that contains a large number of entries.

    Published: 9 Jan 2007
    9.3
    Critical

    CVE-2007-0033

    Last Modified: 23 Apr 2026

    Microsoft Outlook 2002 and 2003 allows user-assisted remote attackers to execute arbitrary code via a malformed VEVENT record in an .iCal meeting request or ICS file.

    Published: 9 Jan 2007
    9.3
    Critical

    CVE-2007-0024

    Last Modified: 23 Apr 2026

    Integer overflow in the Vector Markup Language (VML) implementation (vgx.dll) in Microsoft Internet Explorer 5.01, 6, and 7 on Windows 2000 SP4, XP SP2, Server 2003, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted web page that contains unspecified integer properties that cause insufficient memory allocation and trigger a buffer overflow, aka the "VML Buffer Overrun Vulnerability."

    Published: 9 Jan 2007
    9.3
    Critical

    CVE-2007-0027

    Last Modified: 23 Apr 2026

    Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2, 2004 for Mac, and v.X for Mac allows remote attackers to execute arbitrary code via malformed IMDATA records that trigger memory corruption.

    Published: 9 Jan 2007
    7.8
    High

    CVE-2007-0157

    Last Modified: 23 Apr 2026

    Array index error in the uri_lookup function in the URI parser for neon 0.26.0 to 0.26.2, possibly only on 64-bit platforms, allows remote malicious servers to cause a denial of service (crash) via a URI with non-ASCII characters, which triggers a buffer under-read due to a type conversion error that generates a negative index.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0142

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in orange.asp in ShopStoreNow E-commerce Shopping Cart allows remote attackers to execute arbitrary SQL commands via the CatID parameter.

    Published: 9 Jan 2007
    6.8
    Medium

    CVE-2007-0143

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in NUNE News Script 2.0pre2 allow remote attackers to execute arbitrary PHP code via a URL in the custom_admin_path parameter to (1) index.php or (2) archives.php.

    Published: 9 Jan 2007
    6.8
    Medium

    CVE-2007-0144

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in search.asp in Digitizing Quote And Ordering System 1.0 allows remote authenticated attackers to inject arbitrary web script or HTML via the ordernum parameter.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0149

    Last Modified: 23 Apr 2026

    EMembersPro 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for users.mdb.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0151

    Last Modified: 23 Apr 2026

    MitiSoft stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for access_MS/MitiSoft.mdb.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0156

    Last Modified: 23 Apr 2026

    M-Core stores the database under the web document root, which allows remote attackers to obtain sensitive information via a direct request to db/uyelik.mdb.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0153

    Last Modified: 23 Apr 2026

    AJLogin 3.5 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for ajlogin.mdb.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0155

    Last Modified: 23 Apr 2026

    HarikaOnline 2.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for harikaonline.mdb.

    Published: 9 Jan 2007
    6.8
    Medium

    CVE-2007-0141

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in yald.php in Yet Another Link Directory 1.0 allows remote attackers to inject arbitrary web script or HTML via the search parameter.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0145

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in bn_smrep1.php in BinGoPHP News (BP News) 3.01 allows remote attackers to execute arbitrary PHP code via a URL in the bnrep parameter, a different vector than CVE-2006-4648 and CVE-2006-4649.

    Published: 9 Jan 2007
    6
    Medium

    CVE-2007-0146

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Fix and Chips CMS 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in (a) delete-announce.php; the (2) Announcement form field in (b) staff.php; the (3) Client Name, (4) Business Name, (5) Street, (6) Address 2, (7) Town/City, (8) Postcode, (9) Phone Number, (10) Email Address and (11) Website Address form fields in (c) new_customer.php; and unspecified fields in (d) search.php and (e) client-results.php.

    Published: 9 Jan 2007
    5
    Medium

    CVE-2007-0147

    Last Modified: 23 Apr 2026

    Cuyahoga before 1.0.1 installs the FCKEditor component with an incorrect deny statement in a Web.config file, which allows remote attackers to upload files when these privileges were intended only for the Administrator and Editor roles.

    Published: 9 Jan 2007
    6.8
    Medium

    CVE-2007-0148

    Last Modified: 23 Apr 2026

    Format string vulnerability in OmniGroup OmniWeb 5.5.1 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via format string specifiers in the Javascript alert function.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0154

    Last Modified: 23 Apr 2026

    Webulas stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for db/db.mdb.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0140

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in down.asp in Kolayindir Download (Yenionline) allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0150

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in index.php in Dayfox Blog allow remote attackers to execute arbitrary PHP code via a URL in the (1) page, (2) subject, and (3) q parameters.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0152

    Last Modified: 23 Apr 2026

    OhhASP stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing passwords via a direct request for db/OhhASP.mdb.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0128

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in info_book.asp in Digirez 3.4 and earlier allows remote attackers to execute arbitrary SQL commands via the book_id parameter.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0132

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in compare_product.php in iGeneric iG Shop 1.4 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0133

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in display_review.php in iGeneric iG Shop 1.4 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id or (2) user_login_cookie parameter.

    Published: 9 Jan 2007
    6.8
    Medium

    CVE-2007-0135

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in inc/init.inc.php in Aratix 0.2.2 beta 11 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the current_path parameter.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0130

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in user.php in iGeneric iG Calendar 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0139

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the DECnet-Plus 7.3-2 feature in DECnet/OSI 7.3-2 for OpenVMS ALPHA, and the DECnet-Plus 7.3 feature in DECnet/OSI 7.3 for OpenVMS VAX, allows attackers to obtain "unintended privileged access to data and system resources" via unspecified vectors, related to (1) [SYSEXE]CTF$UI.EXE, (2) [SYSMSG]CTF$MESSAGES.EXE, (3) [SYSHLP]CTF$HELP.HLB, and (4) [SYSMGR]CTF$STARTUP.COM.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0131

    Last Modified: 23 Apr 2026

    JAMWiki before 0.5.0 does not properly check permissions during moves of "read-only or admin-only topics," which allows remote attackers to make unauthorized changes to the wiki.

    Published: 9 Jan 2007
    4.3
    Medium

    CVE-2007-0136

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Drupal before 4.6.11, and 4.7 before 4.7.5, allow remote attackers to inject arbitrary web script or HTML via unspecified parameters in the (1) filter and (2) system modules. NOTE: some of these details are obtained from third party information.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0129

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in main.asp in LocazoList 2.01a beta5 and earlier allows remote attackers to execute arbitrary SQL commands via the subcatID parameter.

    Published: 9 Jan 2007
    7.5
    High

    CVE-2007-0134

    Last Modified: 23 Apr 2026

    Multiple eval injection vulnerabilities in iGeneric iG Shop 1.0 allow remote attackers to execute arbitrary code via the action parameter, which is supplied to an eval function call in (1) cart.php and (2) page.php. NOTE: a later report and CVE analysis indicate that the vulnerability is present in 1.4.

    Published: 9 Jan 2007
    6.8
    Medium

    CVE-2007-0137

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in SimpleBoxes/SerendipityNZ Serene Bach 2.05R and earlier, and 2.08D and earlier in the 2.08 series; and (2) sb 1.13D and earlier, and 1.18R and earlier in the 1.18 series; allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 9 Jan 2007
    5
    Medium

    CVE-2007-0138

    Last Modified: 23 Apr 2026

    formbankcgi.exe in Fersch Formbankserver 1.9, when the PATH_INFO begins with (1) AbfrageForm or (2) EingabeForm, allows remote attackers to cause a denial of service (daemon crash) via multiple requests containing many /../ sequences in the Name parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 9 Jan 2007
    1.9
    Low

    CVE-2007-0120

    Last Modified: 23 Apr 2026

    Acunetix Web Vulnerability Scanner (WVS) 4.0 Build 20060717 and earlier allows remote attackers to cause a denial of service (application crash) via multiple HTTP requests containing invalid Content-Length values.

    Published: 9 Jan 2007
    6.8
    Medium

    CVE-2007-0121

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in search.asp in RI Blog 1.3 allows remote attackers to inject arbitrary web script or HTML via the q parameter.

    Published: 9 Jan 2007