4
    Medium

    CVE-2007-5925

    Last Modified: 6 Jan 2014

    The convert_search_mode_to_innobase function in ha_innodb.cc in the InnoDB engine in MySQL 5.1.23-BK and earlier allows remote authenticated users to cause a denial of service (database crash) via a certain CONTAINS operation on an indexed column, which triggers an assertion error.

    Source:Joe Gallo
    Published:5 Nov 2007
    4.3
    Medium

    CVE-2007-5923

    Last Modified: 6 Jan 2014

    Cross-site scripting (XSS) vulnerability in forms/smpwservices.fcc in CA (formerly Computer Associates) eTrust SiteMinder Agent allows remote attackers to inject arbitrary web script or HTML via the SMAUTHREASON parameter, a different vector than CVE-2005-2204.

    Source:Giuseppe Gottardi
    Published:10 Nov 2007
    6
    Medium

    CVE-2007-5918

    Last Modified: 6 Jan 2014

    Cross-site request forgery (CSRF) vulnerability in edit.php in the MS TopSites add-on for PHP-Nuke does not verify that the uname parameter matches the current account, which allows remote authenticated users to change arbitrary accounts or change the SiteTitleName field as an arbitrary user via a modified uname value in an edit action to modules.php.

    Source:0x90
    Published:10 Nov 2007
    6.8
    Medium

    CVE-2007-5915

    Last Modified: 6 Jan 2014

    Directory traversal vulnerability in index.php in phphelpdesk 0.6.16 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the whattodo parameter.

    Source:joseph.giron13
    Published:10 Nov 2007
    6.8
    Medium

    CVE-2007-5914

    Last Modified: 23 Apr 2026

    Direct static code injection vulnerability in dirsys/modules/config/post.php in JBC Explorer 7.20 RC1 and earlier allows remote authenticated administrators to inject arbitrary PHP code via the DEBUG parameter, which can be executed by accessing config.inc.php. NOTE: this can be exploited by unauthenticated remote attackers by leveraging CVE-2007-5913.

    Source:DarkFig
    Published:10 Nov 2007
    6.8
    Medium

    CVE-2007-5913

    Last Modified: 23 Apr 2026

    dirsys/modules/auth.php in JBC Explorer 7.20 RC1 and earlier does not require authentication, which allows remote attackers to (1) delete auth.inc.php via the suppr parameter, and (2) re-create the auth.inc.php file with contents that specify a new account name and password for JBC Explorer via the login and password parameters.

    Source:DarkFig
    Published:10 Nov 2007
    7.5
    High

    CVE-2007-5912

    Last Modified: 22 Dec 2016

    SQL injection vulnerability in mailer.php in jPORTAL 2 allows remote attackers to execute arbitrary SQL commands via the to parameter.

    Source:Kacper
    Published:10 Nov 2007
    6.8
    Medium

    CVE-2007-5911

    Last Modified: 23 Apr 2026

    Multiple stack-based buffer overflows in the AxMetaStream ActiveX control in AxMetaStream.dll 3.3.2.26 in Viewpoint Media Player 3.2 allow remote attackers to execute arbitrary code via a long string argument to the (1) BroadcastKey, (2) BroadcastKeyFileURL, (3) Component, (4) ComponentClassID, (5) ComponentFileName, (6) ExtraProperty, (7) Properties, (8) RequiredVersions, (9) Source, or (10) XMLText method.

    Source:shinnai
    Published:10 Nov 2007
    10
    Critical

    CVE-2007-5890

    Last Modified: 6 Jan 2014

    Directory traversal vulnerability in index.php in easyGB 2.1.1 allows remote attackers to include arbitrary files via the DatabaseType parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:h4ck3r
    Published:8 Nov 2007
    7.5
    High

    CVE-2007-5887

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in boards/printer.asp in ASP Message Board 2.2.1c allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:Q7x
    Published:7 Nov 2007
    9.3
    Critical

    CVE-2007-5863

    Last Modified: 6 Mar 2011

    Software Update in Apple Mac OS X 10.5.1 allows remote attackers to execute arbitrary commands via a man-in-the-middle (MITM) attack between the client and the server, using a modified distribution definition file with the "allow-external-scripts" option.

    Source:Metasploit
    Published:19 Dec 2007
    9.3
    Critical

    CVE-2007-5849

    Last Modified: 14 Jan 2014

    Integer underflow in the asn1_get_string function in the SNMP back end (backend/snmp.c) for CUPS 1.2 through 1.3.4 allows remote attackers to execute arbitrary code via a crafted SNMP response that triggers a stack-based buffer overflow.

    Source:wei_wang
    Published:13 Dec 2007
    7.5
    High

    CVE-2007-5845

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in error.php in GuppY 4.6.3, 4.5.16, and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the id parameter. NOTE: this can be leveraged to bypass authentication and upload arbitrary files by including admin/inc/upload.inc and specifying certain multipart/form-data input for admin/inc/upload.inc.

    Source:rgod
    Published:6 Nov 2007
    7.5
    High

    CVE-2007-5844

    Last Modified: 3 Nov 2017

    Directory traversal vulnerability in inc/includes.inc in GuppY 4.6.3 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the selskin parameter to index.php. NOTE: this can be leveraged for remote file inclusion by including inc/boxleft.inc and specifying a URL in the xposbox[L][] array parameter.

    Source:irk4z
    Published:6 Nov 2007
    6.8
    Medium

    CVE-2007-5843

    Last Modified: 20 Oct 2016

    PHP remote file inclusion vulnerability in includes/common.php in scWiki 1.0 Beta 2 allows remote attackers to execute arbitrary PHP code via a URL in the pathdot parameter.

    Source:GoLd_M
    Published:6 Nov 2007
    6.8
    Medium

    CVE-2007-5842

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in Vortex Portal 1.0.42 allow remote attackers to execute arbitrary PHP code via a URL in the cfgProgDir parameter to (1) admincp/auth/secure.php or (2) admincp/auth/checklogin.php.

    Source:ShAy6oOoN
    Published:6 Nov 2007
    6.8
    Medium

    CVE-2007-5841

    Last Modified: 11 Nov 2016

    PHP remote file inclusion vulnerability in admin/index.php in nuBoard 0.5 allows remote attackers to execute arbitrary PHP code via a URL in the site parameter.

    Source:GoLd_M
    Published:6 Nov 2007
    6.8
    Medium

    CVE-2007-5840

    Last Modified: 20 Oct 2016

    PHP remote file inclusion vulnerability in starnet/themes/c-sky/main.inc.php in Fred Stuurman SyndeoCMS 2.5.01 allows remote attackers to execute arbitrary PHP code via a URL in the cmsdir parameter, a different vector than CVE-2006-4920.2.

    Source:mdx
    Published:6 Nov 2007
    6.8
    Medium

    CVE-2007-5837

    Last Modified: 14 Jan 2014

    GUI.pm in yarssr 0.2.2, when Gnome default URL handling is disabled, allows remote attackers to execute arbitrary commands via shell metacharacters in a link element in a feed.

    Source:Duncan Gilmore
    Published:5 Nov 2007
    9.3
    Critical

    CVE-2007-5826

    Last Modified: 23 Apr 2026

    Absolute path traversal vulnerability in the EDraw Flowchart ActiveX control in EDImage.ocx 2.0.2005.1104 allows remote attackers to create or overwrite arbitrary files with arbitrary contents via a full pathname in the second argument to the HttpDownloadFile method, a different product than CVE-2007-4420.

    Source:shinnai
    Published:5 Nov 2007
    7.1
    High

    CVE-2007-5824

    Last Modified: 20 Oct 2016

    webserver.c in mt-dappd in Firefly Media Server 0.2.4 and earlier allows remote attackers to cause a denial of service (NULL dereference and daemon crash) via a stats method action to /xml-rpc with (1) an empty Authorization header line, which triggers a crash in the ws_decodepassword function; or (2) a header line without a ':' character, which triggers a crash in the ws_getheaders function.

    Source:nnp
    Published:5 Nov 2007
    7.5
    High

    CVE-2007-5823

    Last Modified: 20 Oct 2016

    Directory traversal vulnerability in forum.php in Ben Ng Scribe 0.2 and earlier allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the username parameter in a Register action.

    Source:KiNgOfThEwOrLd
    Published:5 Nov 2007
    7.5
    High

    CVE-2007-5822

    Last Modified: 20 Oct 2016

    Direct static code injection vulnerability in forum.php in Ben Ng Scribe 0.2 and earlier allows remote attackers to inject arbitrary PHP code into a certain file in regged/ via the username parameter in a Register action, possibly related to the register function in forumfunctions.php.

    Source:KiNgOfThEwOrLd
    Published:5 Nov 2007
    6.8
    Medium

    CVE-2007-5821

    Last Modified: 20 Oct 2016

    Multiple directory traversal vulnerabilities in DM Guestbook 0.4.1 and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) the lng parameter to (a) guestbook.php, (b) admin/admin.guestbook.php, or (c) auto/glob_new.php; or (2) the lngdefault parameter to auto/ch_lng.php.

    Source:GoLd_M
    Published:5 Nov 2007
    9.3
    Critical

    CVE-2007-5820

    Last Modified: 20 Oct 2016

    Directory traversal vulnerability in index.php in Ax Developer CMS (AxDCMS) 0.1.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the module parameter.

    Source:GoLd_M
    Published:5 Nov 2007
    6.1
    Medium

    CVE-2007-5817

    Last Modified: 7 Jan 2014

    dialog.php in CONTENTCustomizer 3.1mp and earlier allows remote attackers to perform certain privileged actions via a (1) del, (2) delbackup, (3) res, or (4) ren action. NOTE: this issue can be leveraged to conduct cross-site scripting (XSS) and possibly other attacks.

    Source:d3hydr8
    Published:5 Nov 2007
    5
    Medium

    CVE-2007-5816

    Last Modified: 6 Jan 2014

    dialog.php in CONTENTCustomizer 3.1mp and earlier allows remote attackers to obtain sensitive author credentials by making a request with an editauthor action, then reading the value of the newlocalpassword password input field in the HTML source of the resulting page.

    Source:d3hydr8
    Published:5 Nov 2007
    10
    Critical

    CVE-2007-5815

    Last Modified: 6 Jan 2014

    Absolute path traversal vulnerability in the WebCacheCleaner ActiveX control 1.3.0.3 in SonicWall SSL-VPN 200 before 2.1, and SSL-VPN 2000/4000 before 2.5, allows remote attackers to delete arbitrary files via a full pathname in the argument to the FileDelete method.

    Source:Will Dormann
    Published:5 Nov 2007
    5
    Medium

    CVE-2007-5813

    Last Modified: 23 Apr 2026

    Multiple directory traversal vulnerabilities in download.php in ISPworker 1.21 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) ticketid and (2) filename parameters.

    Source:GoLd_M
    Published:5 Nov 2007
    5
    Medium

    CVE-2007-5812

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in modules/Builder/DownloadModule.php in ModuleBuilder 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.

    Source:GoLd_M
    Published:5 Nov 2007
    7.5
    High

    CVE-2007-5802

    Last Modified: 6 Jan 2014

    Directory traversal vulnerability in index.php in Firewolf Technologies Synergiser 1.2 RC1 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter. NOTE: this can be leveraged to obtain the path by including a local PHP script with a duplicate function declaration.

    Source:KiNgOfThEwOrLd
    Published:3 Nov 2007
    6.8
    Medium

    CVE-2007-5800

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in the BackUpWordPress 0.4.2b and earlier plugin for WordPress allow remote attackers to execute arbitrary PHP code via a URL in the bkpwp_plugin_path parameter to (1) plugins/BackUp/Archive.php; and (2) Predicate.php, (3) Writer.php, (4) Reader.php, and other unspecified scripts under plugins/BackUp/Archive/.

    Source:S.W.A.T.
    Published:3 Nov 2007
    4.3
    Medium

    CVE-2007-5796

    Last Modified: 6 Jan 2014

    Cross-site scripting (XSS) vulnerability in the management console in Blue Coat ProxySG before 4.2.6.1, and 5.x before 5.2.2.5, allows remote attackers to inject arbitrary web script or HTML by modifying the URL that is used for loading Certificate Revocation Lists.

    Source:Adrian Pastor
    Published:3 Nov 2007
    6.3
    Medium

    CVE-2007-5795

    Last Modified: 6 Jan 2014

    The hack-local-variables function in Emacs before 22.2, when enable-local-variables is set to :safe, does not properly search lists of unsafe or risky variables, which might allow user-assisted attackers to bypass intended restrictions and modify critical program variables via a file containing a Local variables declaration.

    Source:Drake Wilson
    Published:2 Nov 2007
    7.5
    High

    CVE-2007-5786

    Last Modified: 20 Oct 2016

    Multiple PHP remote file inclusion vulnerabilities in GoSamba 1.0.1 allow remote attackers to execute arbitrary PHP code via a URL in the include_path parameter to (1) HTML_oben.php, (2) inc_freigabe.php, (3) inc_freigabe1.php, or (4) inc_freigabe3.php in include/; (5) inc_group.php; (6) inc_manager.php; (7) inc_newgroup.php; (8) inc_smb_conf.php; (9) inc_user.php; or (10) main.php.

    Source:GoLd_M
    Published:1 Nov 2007
    7.5
    High

    CVE-2007-5785

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in file.php in JobSite Professional 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:ZynbER
    Published:1 Nov 2007
    6.8
    Medium

    CVE-2007-5784

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in index.php in CaupoShop Pro 2.x allows remote attackers to execute arbitrary PHP code via a URL in the action parameter.

    Source:mozi
    Published:1 Nov 2007
    7.5
    High

    CVE-2007-5783

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in emc.asp in emagiC CMS.Net 4.0 allows remote attackers to execute arbitrary SQL commands via the pageId parameter.

    Source:hak3r-b0y
    Published:1 Nov 2007
    5
    Medium

    CVE-2007-5782

    Last Modified: 20 Oct 2016

    Directory traversal vulnerability in dl.php in FireConfig 0.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.

    Source:GoLd_M
    Published:1 Nov 2007
    6.8
    Medium

    CVE-2007-5781

    Last Modified: 20 Oct 2016

    PHP remote file inclusion vulnerability in inc/sige_init.php in Sige 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the SYS_PATH parameter.

    Source:GoLd_M
    Published:1 Nov 2007
    6.8
    Medium

    CVE-2007-5780

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in pub/pub08_comments.php in teatro 1.6 allows remote attackers to execute arbitrary PHP code via a URL in the basePath parameter.

    Source:Alkomandoz Hacker
    Published:1 Nov 2007
    7.5
    High

    CVE-2007-5779

    Last Modified: 10 Mar 2011

    Buffer overflow in the GomManager (GomWeb Control) ActiveX control in GomWeb3.dll 1.0.0.12 in Gretech Online Movie Player (GOM Player) 2.1.6.3499 allows remote attackers to execute arbitrary code via a long argument to the OpenUrl method.

    Source:Metasploit
    Published:1 Nov 2007
    5
    Medium

    CVE-2007-5776

    Last Modified: 6 Jan 2014

    Directory traversal vulnerability in igallery.asp in Blue-Collar Productions i-Gallery 3.4 allows remote attackers to read arbitrary files via encoded backslash sequences in the d parameter, as demonstrated by a "%5c../../%5c" sequence.

    Source:hackerbinhphuoc
    Published:1 Nov 2007
    9.8
    Critical

    CVE-2007-5775

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in BitDefender allows attackers to execute arbitrary code via unspecified vectors, aka EEYEB-20071024. NOTE: as of 20071029, the only disclosure is a vague pre-advisory with no actionable information. However, since it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes.

    Source:Nphinity
    Published:1 Nov 2007
    5
    Medium

    CVE-2007-5774

    Last Modified: 23 Apr 2026

    index.php in the File Manager module in Flatnuke 3 allows remote attackers to obtain sensitive information via an invalid argumentname parameter in a disc op action, which reveals the path in an error message.

    Source:KiNgOfThEwOrLd
    Published:1 Nov 2007
    4.3
    Medium

    CVE-2007-5773

    Last Modified: 23 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in index.php in the File Manager module in Flatnuke 3 allows remote attackers to perform certain actions as administrators via requests containing the pathname in the dir parameter and the filename in the ffile parameter.

    Source:KiNgOfThEwOrLd
    Published:1 Nov 2007
    6
    Medium

    CVE-2007-5772

    Last Modified: 23 Apr 2026

    Direct static code injection vulnerability in the download module in Flatnuke 3 allows remote authenticated administrators to inject arbitrary PHP code into a description.it.php file in a subdirectory of Download/ by saving a description and setting fneditmode to 1. NOTE: unauthenticated remote attackers can exploit this by leveraging a cookie manipulation issue.

    Source:KiNgOfThEwOrLd
    Published:1 Nov 2007
    7.5
    High

    CVE-2007-5771

    Last Modified: 23 Apr 2026

    Flatnuke 3 (aka FlatnuX) allows remote attackers to obtain administrative access via a myforum%00 cookie.

    Source:KiNgOfThEwOrLd
    Published:1 Nov 2007
    7.2
    High

    CVE-2007-5762

    Last Modified: 13 Jul 2017

    NICM.SYS driver 3.0.0.4, as used in Novell NetWare Client 4.91 SP4, allows local users to execute arbitrary code by opening the \\.\nicm device and providing crafted kernel addresses via IOCTLs with the METHOD_NEITHER buffering mode.

    Source:sickness
    Published:9 Jan 2008
    Low

    CVE-2007-5759

    Last Modified: 8 Nov 2016

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-6335. Reason: This candidate is a duplicate of CVE-2007-6335. Notes: All CVE users should reference CVE-2007-6335 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:Thomas Pollet
    Published:20 Dec 2007