5.5
    Medium

    CVE-2007-6317

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in BarracudaDrive Web Server before 3.8 allow (1) remote attackers to read arbitrary files via certain ..\ (dot dot backslash) sequences in the URL path, or (2) remote authenticated users to delete arbitrary files or create arbitrary directories via a ..\ (dot dot backslash) sequence in the dir parameter to /drive/c/bdusers/USER/.

    Source:Luigi Auriemma
    Published:12 Dec 2007
    4.3
    Medium

    CVE-2007-6316

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in BarracudaDrive Web Server before 3.8 allows remote attackers to inject arbitrary web script or HTML via the URI path in an HTTP GET request, which is activated by administrators viewing log files via the Trace page.

    Source:Luigi Auriemma
    Published:12 Dec 2007
    4
    Medium

    CVE-2007-6315

    Last Modified: 23 Apr 2026

    Group Chat in BarracudaDrive Web Server before 3.8 allows remote authenticated users to cause a denial of service (crash) via a HTTP request to /eh/chat.ehintf/C. that does not contain a Connection ID, which results in a NULL pointer dereference.

    Source:Luigi Auriemma
    Published:12 Dec 2007
    5
    Medium

    CVE-2007-6314

    Last Modified: 23 Apr 2026

    BarracudaDrive Web Server before 3.8 allows remote attackers to read the source code for web scripts by appending a (1) + (plus), (2) . (dot), or (3) %80 and similar characters to the file name in the URL.

    Source:Luigi Auriemma
    Published:12 Dec 2007
    7.5
    High

    CVE-2007-6311

    Last Modified: 25 Oct 2016

    SQL injection vulnerability in (1) index.php, and possibly (2) admin/index.php, in Falt4Extreme RC4 10.9.2007 allows remote attackers to execute arbitrary SQL commands via the nav_ID parameter.

    Source:H-Security Labs
    Published:11 Dec 2007
    4.3
    Medium

    CVE-2007-6310

    Last Modified: 25 Oct 2016

    Multiple cross-site scripting (XSS) vulnerabilities in Falt4Extreme RC4 10.9.2007 allow remote attackers to inject arbitrary web script or HTML via the handler parameter to (1) index.php and possibly (2) admin/index.php, and (3) the topic parameter to modules/feed/feed.php (aka modules/feed.php).

    Source:H-Security Labs
    Published:11 Dec 2007
    4.3
    Medium

    CVE-2007-6309

    Last Modified: 10 Jan 2014

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in webSPELL 4.1.2 allow remote attackers to inject arbitrary web script or HTML via (1) the galleryID parameter in a usergallery upload action; or the (2) upID, (3) tag, (4) month, (5) userID, or (6) year parameter in a calendar announce action.

    Source:Brainhead
    Published:11 Dec 2007
    4.3
    Medium

    CVE-2007-6307

    Last Modified: 10 Jan 2014

    Multiple cross-site scripting (XSS) vulnerabilities in clickstats.php in wwwstats 3.21 allow remote attackers to inject arbitrary web script or HTML via (1) the link parameter or (2) the User-Agent HTTP header.

    Source:Jesus Olmos Gonzalez
    Published:11 Dec 2007
    4.3
    Medium

    CVE-2007-6301

    Last Modified: 10 Jan 2014

    Cross-site scripting (XSS) vulnerability in compose.php in OpenNewsletter 2.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the type parameter.

    Source:Manu
    Published:10 Dec 2007
    4.3
    Medium

    CVE-2007-6297

    Last Modified: 10 Jan 2014

    Multiple cross-site scripting (XSS) vulnerabilities in PHPMyChat 0.14.5 allow remote attackers to inject arbitrary web script or HTML via the (1) LIMIT parameter to chat/deluser.php3, the (2) Link parameter to chat/edituser.php3, or the (3) LastCheck or (4) B parameter to chat/users_popupL.php3. NOTE: the FontName vectors for start_page.css.php3 and style.css.php3 are already covered by CVE-2005-1619. The medium vectors for start_page.css.php3 (start_page.css.php) and style.css.php3 (style.css.php), and the From vector for users_popupL.php3 (users_popupL.php), are already covered by CVE-2005-3991.

    Source:beenudel1986
    Published:10 Dec 2007
    7.5
    High

    CVE-2007-6292

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in leggi_commenti.asp in MWOpen 1.4 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:KiNgOfThEwOrLd
    Published:10 Dec 2007
    5
    Medium

    CVE-2007-6290

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in js/get_js.php in SERWeb 2.0.0 dev1 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) mod and (2) js parameters.

    Source:GoLd_M
    Published:10 Dec 2007
    6.8
    Medium

    CVE-2007-6289

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in SerWeb 2.0.0 dev1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) _SERWEB[configdir] parameter to load_lang.php, (2) _SERWEB[functionsdir] parameter to main_prepend.php, and the (3) _PHPLIB[libdir] parameter to load_phplib.php, different vectors than CVE-2007-3359 and CVE-2007-3358.

    Source:GoLd_M
    Published:10 Dec 2007
    7.8
    High

    CVE-2007-6276

    Last Modified: 23 Apr 2026

    The accept_connections function in the virtual private network daemon (vpnd) in Apple Mac OS X 10.5 before 10.5.4 allows remote attackers to cause a denial of service (divide-by-zero error and daemon crash) via a crafted load balancing packet to UDP port 4112.

    Source:mu-b
    Published:7 Dec 2007
    7.5
    High

    CVE-2007-6275

    Last Modified: 4 Jan 2017

    SQL injection vulnerability in modules/adresses/ratefile.php in bcoos 1.0.10 and earlier allows remote attackers to execute arbitrary SQL commands via the lid parameter, a different vector than CVE-2007-6266.

    Source:Lostmon
    Published:7 Dec 2007
    9.3
    Critical

    CVE-2007-6273

    Last Modified: 10 Jan 2014

    Multiple format string vulnerabilities in the configuration file in SonicWALL GLobal VPN Client 3.1.556 and 4.0.0.810 allow user-assisted remote attackers to execute arbitrary code via format string specifiers in the (1) Hostname tag or the (2) name attribute in the Connection tag. NOTE: there might not be any realistic circumstances in which this issue crosses privilege boundaries.

    Source:SEC Consult
    Published:7 Dec 2007
    7.5
    High

    CVE-2007-6272

    Last Modified: 10 Jan 2014

    Multiple SQL injection vulnerabilities in index.php in Joomla! 1.5 RC3 allow remote attackers to execute arbitrary SQL commands via (1) the view parameter to the com_content component, (2) the task parameter to the com_search component, or (3) the option parameter in a search action to the com_search component.

    Source:beenudel1986
    Published:7 Dec 2007
    5
    Medium

    CVE-2007-6271

    Last Modified: 10 Jan 2014

    Absolute News Manager.NET 5.1 allows remote attackers to obtain sensitive information via a direct request to getpath.aspx, which reveals the installation path in an error message.

    Source:Adrian Pastor
    Published:7 Dec 2007
    4.3
    Medium

    CVE-2007-6270

    Last Modified: 10 Jan 2014

    Multiple cross-site scripting (XSS) vulnerabilities in Absolute News Manager.NET 5.1 allow remote attackers to inject arbitrary web script or HTML via the (1) rmore parameter to xlaabsolutenm.aspx and the (2) template parameter to pages/default.aspx.

    Source:Adrian Pastor
    Published:7 Dec 2007
    7.5
    High

    CVE-2007-6269

    Last Modified: 10 Jan 2014

    Multiple SQL injection vulnerabilities in xlaabsolutenm.aspx in Absolute News Manager.NET 5.1 allow remote attackers to execute arbitrary SQL commands via the (1) z, (2) pz, (3) ord, and (4) sort parameters.

    Source:Adrian Pastor
    Published:7 Dec 2007
    5
    Medium

    CVE-2007-6268

    Last Modified: 10 Jan 2014

    Directory traversal vulnerability in pages/default.aspx in Absolute News Manager.NET 5.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the template parameter.

    Source:Adrian Pastor
    Published:7 Dec 2007
    7.5
    High

    CVE-2007-6266

    Last Modified: 4 Jan 2017

    Multiple SQL injection vulnerabilities in bcoos 1.0.10 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the gid parameter to modules/arcade/index.php in a show_stats action, or the lid parameter to (2) modules/myalbum/ratephoto.php or (3) modules/mylinks/ratelink.php, different vectors than CVE-2007-5104.

    Source:Lostmon
    Published:7 Dec 2007
    6.8
    Medium

    CVE-2007-6262

    Last Modified: 25 Oct 2016

    A certain ActiveX control in axvlc.dll in VideoLAN VLC 0.8.6 before 0.8.6d allows remote attackers to execute arbitrary code via crafted arguments to the (1) addTarget, (2) getVariable, or (3) setVariable function, resulting from a "bad initialized pointer," aka a "recursive plugin release vulnerability."

    Source:Ricardo Narvaja
    Published:6 Dec 2007
    4.9
    Medium

    CVE-2007-6261

    Last Modified: 23 Apr 2026

    Integer overflow in the load_threadstack function in the Mach-O loader (mach_loader.c) in the xnu kernel in Apple Mac OS X 10.4 through 10.5.1 allows local users to cause a denial of service (infinite loop) via a crafted Mach-O binary.

    Source:mu-b
    Published:6 Dec 2007
    7.5
    High

    CVE-2007-6258

    Last Modified: 31 Jan 2017

    Multiple stack-based buffer overflows in the legacy mod_jk2 2.0.3-DEV and earlier Apache module allow remote attackers to execute arbitrary code via a long (1) Host header, or (2) Hostname within a Host header.

    Source:INetCop Security
    Published:18 Feb 2008
    4.3
    Medium

    CVE-2007-6244

    Last Modified: 20 Jan 2014

    Multiple cross-site scripting (XSS) vulnerabilities in Adobe Flash Player 9.x up to 9.0.48.0 and 8.x up to 8.0.35.0 allow remote attackers to inject arbitrary web script or HTML via (1) a SWF file that uses the asfunction: protocol or (2) the navigateToURL function when used with the Flash Player ActiveX Control in Internet Explorer.

    Source:Adam Barth
    Published:17 Dec 2007
    7.5
    High

    CVE-2007-6240

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in active.asp in Snitz Forums 2000 3.4.06 allows remote attackers to execute arbitrary SQL commands via the BuildTime parameter.

    Source:BugReport.IR
    Published:5 Dec 2007
    9
    Critical

    CVE-2007-6237

    Last Modified: 25 Nov 2016

    cp.php in DeluxeBB 1.09 does not verify that the membercookie parameter corresponds to the authenticated member during a profile update, which allows remote authenticated users to change the e-mail addresses of arbitrary accounts via a modified membercookie parameter, a different vector than CVE-2006-4078. NOTE: this can be leveraged for administrative access by requesting password-reset e-mail through a lostpw action to misc.php.

    Source:nexen
    Published:4 Dec 2007
    5
    Medium

    CVE-2007-6236

    Last Modified: 23 Apr 2026

    Microsoft Windows Media Player (WMP) allows remote attackers to cause a denial of service (application crash) via a certain AIFF file that triggers a divide-by-zero error, as demonstrated by kr.aiff.

    Source:Gil-Dong / Woo-Chi
    Published:4 Dec 2007
    5
    Medium

    CVE-2007-6235

    Last Modified: 25 Oct 2016

    A certain ActiveX control in RealNetworks RealPlayer 11 allows remote attackers to cause a denial of service (application crash) via a malformed .au file that triggers a divide-by-zero error. NOTE: this might be related to CVE-2007-4904.

    Source:NtWaK0
    Published:4 Dec 2007
    10
    Critical

    CVE-2007-6234

    Last Modified: 20 Oct 2016

    index.php in FTP Admin 0.1.0 allows remote attackers to bypass authentication and obtain administrative access via a loggedin parameter with a value of true, as demonstrated by adding a user account.

    Source:Omni
    Published:4 Dec 2007
    4.9
    Medium

    CVE-2007-6233

    Last Modified: 20 Oct 2016

    Directory traversal vulnerability in index.php in FTP Admin 0.1.0 allows remote authenticated users to include and execute arbitrary local files via a .. (dot dot) in the page parameter. NOTE: in some environments, this can be leveraged for remote file inclusion by using a UNC share pathname or an ftp, ftps, or ssh2.sftp URL.

    Source:Omni
    Published:4 Dec 2007
    4.3
    Medium

    CVE-2007-6232

    Last Modified: 20 Oct 2016

    Cross-site scripting (XSS) vulnerability in index.php in FTP Admin 0.1.0 allows remote attackers to inject arbitrary web script or HTML via the error parameter in an error page action.

    Source:Omni
    Published:4 Dec 2007
    7.5
    High

    CVE-2007-6231

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in tellmatic 1.0.7 allow remote attackers to execute arbitrary PHP code via a URL in the tm_includepath parameter to (1) Classes.inc.php, (2) statistic.inc.php, (3) status.inc.php, (4) status_top_x.inc.php, or (5) libchart-1.1/libchart.php in include/. NOTE: access to include/ is blocked by .htaccess in most deployments that use Apache HTTP Server.

    Source:ShAy6oOoN
    Published:4 Dec 2007
    7.5
    High

    CVE-2007-6230

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in common/classes/class_HeaderHandler.lib.php in Rayzz Script 2.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the CFG[site][project_path] parameter.

    Source:Crackers_Child
    Published:4 Dec 2007
    7.5
    High

    CVE-2007-6229

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in common/classes/class_HeaderHandler.lib.php in Rayzz Script 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the CFG[site][project_path] parameter.

    Source:Crackers_Child
    Published:4 Dec 2007
    6.8
    Medium

    CVE-2007-6228

    Last Modified: 10 Jan 2014

    Stack-based buffer overflow in the Helper class in the yt.ythelper.2 ActiveX control in Yahoo! Toolbar 1.4.1 allows remote attackers to cause a denial of service (browser crash) via a long argument to the c method.

    Source:Elazar Broad
    Published:4 Dec 2007
    7.2
    High

    CVE-2007-6227

    Last Modified: 14 Jan 2014

    QEMU 0.9.0 allows local users of a Windows XP SP2 guest operating system to overwrite the TranslationBlock (code_gen_buffer) buffer, and probably have unspecified other impacts related to an "overflow," via certain Windows executable programs, as demonstrated by qemu-dos.com.

    Source:TeLeMan
    Published:4 Dec 2007
    7.5
    High

    CVE-2007-6223

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in garage.php in phpBB Garage 1.2.0 Beta3 allows remote attackers to execute arbitrary SQL commands via the make_id parameter in a search action in browse mode.

    Source:maku234
    Published:4 Dec 2007
    7.8
    High

    CVE-2007-6221

    Last Modified: 20 Oct 2016

    TuMusika Evolution 1.7R5 allows remote attackers to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:GoLd_M
    Published:4 Dec 2007
    5
    Medium

    CVE-2007-6218

    Last Modified: 10 Jan 2014

    Multiple PHP remote file inclusion vulnerabilities in Ossigeno CMS 2.2 pre1 allow remote attackers to execute arbitrary PHP code via a URL in the (1) level parameter to (a) install_module.php and (b) uninstall_module.php in upload/xax/admin/modules/, (c) upload/xax/admin/patch/index.php, and (d) install_module.php and (e) uninstall_module.php in upload/xax/ossigeno/admin/; and the (2) ossigeno parameter to (f) ossigeno_modules/ossigeno-catalogo/xax/ossigeno/catalogo/common.php, different vectors than CVE-2007-5234.

    Source:ShAy6oOoN
    Published:4 Dec 2007
    7.5
    High

    CVE-2007-6217

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in login.asp in Irola My-Time (aka Timesheet) 3.5 allow remote attackers to execute arbitrary SQL commands via the (1) login (aka Username) and (2) password parameters. NOTE: some of these details are obtained from third party information.

    Source:Aria-Security Team
    Published:4 Dec 2007
    5
    Medium

    CVE-2007-6215

    Last Modified: 20 Oct 2016

    Multiple directory traversal vulnerabilities in play.php in Web-MeetMe 3.0.3 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) roomNo and possibly the (2) bookid parameter.

    Source:Evil.Man
    Published:4 Dec 2007
    4.3
    Medium

    CVE-2007-6214

    Last Modified: 20 Oct 2016

    Directory traversal vulnerability in include/file_download.php in LearnLoop 2.0 beta7 allows remote attackers to read arbitrary files via a .. (dot dot) in the sFilePath parameter. NOTE: exploitation requires that the product is configured, but has zero files in the database.

    Source:GoLd_M
    Published:4 Dec 2007
    5
    Medium

    CVE-2007-6213

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in mod/chat/index.php in WebED 0.0.9 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) Root and (2) Path parameters.

    Source:GoLd_M
    Published:4 Dec 2007
    5
    Medium

    CVE-2007-6212

    Last Modified: 20 Oct 2016

    Directory traversal vulnerability in region.php in KML share 1.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the layer parameter.

    Source:GoLd_M
    Published:4 Dec 2007
    7.2
    High

    CVE-2007-6211

    Last Modified: 23 Apr 2026

    Send ICMP Nasty Garbage (sing) on Debian GNU/Linux allows local users to append to arbitrary files and gain privileges via the -L (output log file) option. NOTE: this issue is only a vulnerability in limited environments, since sing is not installed setuid, and the administrator would need to override a non-setuid default during installation.

    Source:bannedit
    Published:4 Dec 2007
    2.1
    Low

    CVE-2007-6210

    Last Modified: 15 Nov 2017

    zabbix_agentd 1.1.4 in ZABBIX before 1.4.3 runs "UserParameter" scripts with gid 0, which might allow local users to gain privileges.

    Source:Bas van Schaik
    Published:4 Dec 2007
    10
    Critical

    CVE-2007-6204

    Last Modified: 7 Mar 2011

    Multiple stack-based buffer overflows in HP OpenView Network Node Manager (OV NNM) 6.41, 7.01, and 7.51 allow remote attackers to execute arbitrary code via unspecified long arguments to (1) ovlogin.exe, (2) OpenView5.exe, (3) snmpviewer.exe, and (4) webappmon.exe, as demonstrated via a long Action parameter to OpenView5.exe.

    Source:Metasploit
    Published:13 Dec 2007
    4.3
    Medium

    CVE-2007-6203

    Last Modified: 10 Jan 2014

    Apache HTTP Server 2.0.x and 2.2.x does not sanitize the HTTP Method specifier header from an HTTP request when it is reflected back in a "413 Request Entity Too Large" error message, which might allow cross-site scripting (XSS) style attacks using web client components that can send arbitrary headers in requests, as demonstrated via an HTTP request containing an invalid Content-length value, a similar issue to CVE-2006-3918.

    Source:Adrian Pastor
    Published:30 Nov 2007