CVE Feed

    Dashboard / CVE

    6
    Medium

    CVE-2007-0085

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in sys/dev/pci/vga_pci.c in the VGA graphics driver for wscons in OpenBSD 3.9 and 4.0, when the kernel is compiled with the PCIAGP option and a non-AGP device is being used, allows local users to gain privileges via unspecified vectors, possibly related to agp_ioctl NULL pointer reference.

    Published: 5 Jan 2007
    7.5
    High

    CVE-2007-0075

    Last Modified: 23 Apr 2026

    AspBB stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user passwords via a direct request for db/aspbb.mdb.

    Published: 5 Jan 2007
    6.8
    Medium

    CVE-2007-0059

    Last Modified: 23 Apr 2026

    Cross-zone scripting vulnerability in Apple Quicktime 3 to 7.1.3 allows remote user-assisted attackers to execute arbitrary code and list filesystem contents via a QuickTime movie (.MOV) with an HREF Track (HREFTrack) that contains an automatic action tag with a local URI, which is executed in a local zone during preview, as exploited by a MySpace worm.

    Published: 5 Jan 2007
    5
    Medium

    CVE-2007-0055

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in formbankcgi.exe/AbfrageForm in Formbankserver 1.9 allows remote attackers to read arbitrary files via directory traversal sequences in the Name parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 4 Jan 2007
    10
    Critical

    CVE-2007-0057

    Last Modified: 23 Apr 2026

    Cisco Clean Access (CCA) 3.6.x through 3.6.4.2 and 4.0.x through 4.0.3.2 does not properly configure or allow modification of a shared secret authentication key, which causes all devices to have the same shared sercet and allows remote attackers to gain unauthorized access.

    Published: 4 Jan 2007
    7.8
    High

    CVE-2007-0058

    Last Modified: 23 Apr 2026

    Cisco Clean Access (CCA) 3.5.x through 3.5.9 and 3.6.x through 3.6.1.1 on the Clean Access Manager (CAM) allows remote attackers to bypass authentication and download arbitrary manual database backups by guessing the snapshot filename using brute force, then making a direct request for the file.

    Published: 4 Jan 2007
    7.5
    High

    CVE-2007-0053

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in detail.asp in ASP SiteWare autoDealer 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the iPro parameter.

    Published: 4 Jan 2007
    6.8
    Medium

    CVE-2007-0056

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in AShop Deluxe 4.5 and AShop Administration Panel allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter to (a) ashop/catalogue.php and (b) ashop/basket.php, the (2) exp parameter to ashop/catalogue.php, the (3) searchstring parameter to (c) ashop/search.php, the (4) checkout and (5) action parameters to (d) ashop/shipping.php, the cat parameter to (f) cart-path/admin/editcatalogue.php, and the (7) resultpage parameter to (g) cart-path/admin/salesadmin.php.

    Published: 4 Jan 2007
    6.8
    Medium

    CVE-2007-0054

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in gbrowse.php in Belchior Foundry vCard PRO allows remote attackers to inject arbitrary web script or HTML via the sortby parameter.

    Published: 4 Jan 2007
    7.5
    High

    CVE-2007-0052

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in haberdetay.asp in Vizayn Haber allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 4 Jan 2007
    6.8
    Medium

    CVE-2007-0051

    Last Modified: 23 Apr 2026

    Format string vulnerability in Apple iPhoto 6.0.5 (316), and other versions before 6.0.6, allows remote user-assisted attackers to execute arbitrary code via a crafted photocast with format string specifiers in the title of an RSS iPhoto feed.

    Published: 4 Jan 2007
    7.5
    High

    CVE-2007-0049

    Last Modified: 23 Apr 2026

    Geckovich TaskTracker Pro 1.5 and earlier allows remote attackers to add administrative or other accounts via an Add action with a modified GroupID in a direct request to Customize.asp.

    Published: 4 Jan 2007
    7.5
    High

    CVE-2007-0050

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in index.php in OpenPinboard 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the language parameter. NOTE: this issue has been disputed by the developer and a third party, since the variable is set before use. CVE analysis suggests that there is a small time window of risk before the installation is complete

    Published: 4 Jan 2007
    6.8
    Medium

    CVE-2007-0047

    Last Modified: 23 Apr 2026

    CRLF injection vulnerability in Adobe Acrobat Reader Plugin before 8.0.0, when used with the Microsoft.XMLHTTP ActiveX object in Internet Explorer, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the javascript: URI in the (1) FDF, (2) XML, or (3) XFDF AJAX request parameters.

    Published: 3 Jan 2007
    5
    Medium

    CVE-2007-0048

    Last Modified: 23 Apr 2026

    Adobe Acrobat Reader Plugin before 8.0.0, and possibly the plugin distributed with Adobe Reader 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2, when used with Internet Explorer, Google Chrome, or Opera, allows remote attackers to cause a denial of service (memory consumption) via a long sequence of # (hash) characters appended to a PDF URL, related to a "cross-site scripting issue."

    Published: 3 Jan 2007
    7.5
    High

    CVE-2007-0016

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in MoviePlay 4.76 allows remote attackers to execute arbitrary code via a long filename in a LST file.

    Published: 3 Jan 2007
    6.8
    Medium

    CVE-2007-0017

    Last Modified: 23 Apr 2026

    Multiple format string vulnerabilities in (1) the cdio_log_handler function in modules/access/cdda/access.c in the CDDA (libcdda_plugin) plugin, and the (2) cdio_log_handler and (3) vcd_log_handler functions in modules/access/vcdx/access.c in the VCDX (libvcdx_plugin) plugin, in VideoLAN VLC 0.7.0 through 0.8.6 allow user-assisted remote attackers to execute arbitrary code via format string specifiers in an invalid URI, as demonstrated by a udp://-- URI in an M3U file.

    Published: 3 Jan 2007
    7.2
    High

    CVE-2006-5753

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the listxattr system call in Linux kernel, when a "bad inode" is present, allows local users to cause a denial of service (data corruption) and possibly gain privileges via unknown vectors.

    Published: 3 Jan 2007
    4.3
    Medium

    CVE-2007-0044

    Last Modified: 23 Apr 2026

    Adobe Acrobat Reader Plugin before 8.0.0 for the Firefox, Internet Explorer, and Opera web browsers allows remote attackers to force the browser to make unauthorized requests to other web sites via a URL in the (1) FDF, (2) xml, and (3) xfdf AJAX request parameters, following the # (hash) character, aka "Universal CSRF and session riding."

    Published: 3 Jan 2007
    7.5
    High

    CVE-2007-0046

    Last Modified: 23 Apr 2026

    Double free vulnerability in the Adobe Acrobat Reader Plugin before 8.0.0, as used in Mozilla Firefox 1.5.0.7, allows remote attackers to execute arbitrary code by causing an error via a javascript: URI call to document.write in the (1) FDF, (2) XML, or (3) XFDF AJAX request parameters.

    Published: 3 Jan 2007
    4.3
    Medium

    CVE-2007-0045

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Adobe Acrobat Reader Plugin before 8.0.0, and possibly the plugin distributed with Adobe Reader 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2, for Mozilla Firefox, Microsoft Internet Explorer 6 SP1, Google Chrome, Opera 8.5.4 build 770, and Opera 9.10.8679 on Windows allow remote attackers to inject arbitrary JavaScript and conduct other attacks via a .pdf URL with a javascript: or res: URI with (1) FDF, (2) XML, and (3) XFDF AJAX parameters, or (4) an arbitrarily named name=URI anchor identifier, aka "Universal XSS (UXSS)."

    Published: 3 Jan 2007
    6.8
    Medium

    CVE-2007-0015

    Last Modified: 23 Apr 2026

    Buffer overflow in Apple QuickTime 7.1.3 allows remote attackers to execute arbitrary code via a long rtsp:// URI.

    Published: 1 Jan 2007
    5
    Medium

    CVE-2006-6827

    Last Modified: 23 Apr 2026

    Flash8b.ocx in Macromedia Flash 8 allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long string in the Flash8b.AllowScriptAccess method.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6828

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Efkan Forum 1.0 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the grup parameter in admin.asp, or the id parameter in (2) default.asp or (3) admin.asp. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information. The default.asp/grup vector is already covered by CVE-2006-6794.

    Published: 31 Dec 2006
    10
    Critical

    CVE-2006-6853

    Last Modified: 23 Apr 2026

    Buffer overflow in Durian Web Application Server 3.02 freeware on Windows allows remote attackers to execute arbitrary code via a long string in a crafted packet to TCP port 4002.

    Published: 31 Dec 2006
    6.8
    Medium

    CVE-2006-6877

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in Matteo Lucarelli 3editor CMS 0.42 and earlier, when register_globals is enabled, allows remote attackers to include arbitrary files via a .. (dot dot) in the page parameter.

    Published: 31 Dec 2006
    10
    Critical

    CVE-2006-6894

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in SPINE before 1.2 have unknown impact and attack vectors, related to (1) "Placeholders in database handler" and (2) "Macro admin security."

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6913

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in phpMyFAQ 1.6.7 and earlier allows remote attackers to upload arbitrary PHP scripts via unspecified vectors.

    Published: 31 Dec 2006
    10
    Critical

    CVE-2006-6917

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in Computer Associates (CA) BrightStor ARCserve Backup R11.5 Server before SP2 allows remote attackers to execute arbitrary code in the Tape Engine (tapeeng.exe) via a crafted RPC request with (1) opnum 38, which is not properly handled in TAPEUTIL.dll 11.5.3884.0, or (2) opnum 37, which is not properly handled in TAPEENG.dll 11.5.3884.0.

    Published: 31 Dec 2006
    4.3
    Medium

    CVE-2006-1305

    Last Modified: 23 Apr 2026

    Microsoft Outlook 2000, 2002, and 2003 allows user-assisted remote attackers to cause a denial of service (memory exhaustion and interrupted mail recovery) via malformed e-mail header information, possibly related to (1) long subject lines or (2) large numbers of recipients in To or CC headers.

    Published: 31 Dec 2006
    Unknown

    CVE-2006-3432

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-0028. Reason: This candidate is a reservation duplicate of CVE-2007-0028. The original assigner switched to a new CVE number. Notes: All CVE users should reference CVE-2007-0028 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 31 Dec 2006
    10
    Critical

    CVE-2006-4098

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the CSRadius service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 and ACS Solution Engine before 4.1 allows remote attackers to execute arbitrary code via a crafted RADIUS Accounting-Request packet.

    Published: 31 Dec 2006
    7.8
    High

    CVE-2006-4097

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in the CSRadius service in Cisco Secure Access Control Server (ACS) for Windows before 4.1 and ACS Solution Engine before 4.1 allow remote attackers to cause a denial of service (crash) via a crafted RADIUS Access-Request packet. NOTE: it has been reported that at least one issue is a heap-based buffer overflow involving the Tunnel-Password attribute.

    Published: 31 Dec 2006
    6.8
    Medium

    CVE-2006-4576

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in The Address Book 1.04e allows remote attackers to inject arbitrary web script or HTML by uploading the HTML file with a GIF or JPG extension, which is rendered by Internet Explorer.

    Published: 31 Dec 2006
    6.8
    Medium

    CVE-2006-4577

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in The Address Book 1.04e allow remote attackers to inject arbitrary web script or HTML via Javascript events in the (1) email, (2) websites, and (3) groupAddName parameters in (a) save.php; the (4) errorMsg parameter in (b) index.php; and the (5) goTo and (6) search parameters in (c) search.php.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-4578

    Last Modified: 23 Apr 2026

    export.php in The Address Book 1.04e writes username and password hash information into a publicly accessible file when dumping the MySQL database contents, which allows remote attackers to obtain sensitive information.

    Published: 31 Dec 2006
    5
    Medium

    CVE-2006-4582

    Last Modified: 23 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in The Address Book 1.04e allows remote attackers to perform unauthorized actions as other users via unspecified vectors, as demonstrated by deleting arbitrary users via the id parameter in a deleteuser action in users.php.

    Published: 31 Dec 2006
    5
    Medium

    CVE-2006-4581

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in The Address Book 1.04e validates the Content-Type header but not the file extension, which allows remote attackers to upload arbitrary PHP scripts.

    Published: 31 Dec 2006
    9.3
    Critical

    CVE-2006-4695

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in certain COM objects in Microsoft Office Web Components 2000 allows user-assisted remote attackers to execute arbitrary code via a crafted URL, aka "Office Web Components URL Parsing Vulnerability."

    Published: 31 Dec 2006
    4.3
    Medium

    CVE-2006-4727

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in emfadmin/statusView.do in Tumbleweed EMF Administration Module 6.2.2 Build 4123, and possibly other versions before 6.3.2, allows remote attackers to inject arbitrary web script or HTML via the (1) lineId and (2) sort parameters.

    Published: 31 Dec 2006
    7.8
    High

    CVE-2006-5867

    Last Modified: 23 Apr 2026

    fetchmail before 6.3.6-rc4 does not properly enforce TLS and may transmit cleartext passwords over unsecured links if certain circumstances occur, which allows remote attackers to obtain sensitive information via man-in-the-middle (MITM) attacks.

    Published: 31 Dec 2006
    9.3
    Critical

    CVE-2006-5870

    Last Modified: 23 Apr 2026

    Multiple integer overflows in OpenOffice.org (OOo) 2.0.4 and earlier, and possibly other versions before 2.1.0; and StarOffice 6 through 8; allow user-assisted remote attackers to execute arbitrary code via a crafted (a) WMF or (b) EMF file that triggers heap-based buffer overflows in (1) wmf/winwmf.cxx, during processing of META_ESCAPE records; and wmf/enhwmf.cxx, during processing of (2) EMR_POLYPOLYGON and (3) EMR_POLYPOLYGON16 records.

    Published: 31 Dec 2006
    5
    Medium

    CVE-2006-6144

    Last Modified: 23 Apr 2026

    The "mechglue" abstraction interface of the GSS-API library for Kerberos 5 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other products that use this library, allows remote attackers to cause a denial of service (crash) via unspecified vectors that cause mechglue to free uninitialized pointers.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6488

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the DoModal function in the Dialog Wrapper Module ActiveX control (DlgWrapper.dll) before 8.4.166.0, as used by ICONICS OPC Enabled Gauge, Switch, and Vessel ActiveX, allows remote attackers to execute arbitrary code via a long (1) FileName or (2) Filter argument.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6831

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in faqDsp.asp in aFAQ 1.0 allows remote attackers to execute arbitrary SQL commands via the catcode parameter.

    Published: 31 Dec 2006
    4.3
    Medium

    CVE-2006-6832

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Joomla! before 1.0.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly related to poll.php or the module title.

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6833

    Last Modified: 23 Apr 2026

    com_categories in Joomla! before 1.0.12 does not validate input, which has unknown impact and remote attack vectors.

    Published: 31 Dec 2006
    6.8
    Medium

    CVE-2006-6834

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in Joomla! before 1.0.12 have unknown impact and attack vectors related to (1) "unneeded legacy functions" and (2) "Several low level security fixes."

    Published: 31 Dec 2006
    7.5
    High

    CVE-2006-6835

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in Journal.inc.php in Neocrome Land Down Under (LDU) 8.x and earlier allows remote attackers to execute arbitrary SQL commands via the w parameter to journal.php.

    Published: 31 Dec 2006
    10
    Critical

    CVE-2006-6839

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in phpBB before 2.0.22 has unknown impact and remote attack vectors related to "criteria for 'bad' redirection targets."

    Published: 31 Dec 2006