6.8
    Medium

    CVE-2007-5754

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in urlinn_includes/config.php in phpFaber URLInn 2.0.5 allows remote attackers to execute arbitrary PHP code via a URL in the dir_ws parameter.

    Source:BiNgZa
    Published:31 Oct 2007
    7.5
    High

    CVE-2007-5752

    Last Modified: 27 Oct 2016

    adduser.php in PHP-AGTC Membership (AGTC-Membership) System 1.1a does not require authentication, which allows remote attackers to create accounts via a modified form, as demonstrated by an account with admin (userlevel 4) privileges.

    Source:t0pP8uZz
    Published:31 Oct 2007
    7.5
    High

    CVE-2007-5740

    Last Modified: 6 Jan 2014

    The format string protection mechanism in IMAPD for Perdition Mail Retrieval Proxy 1.17 and earlier allows remote attackers to execute arbitrary code via an IMAP tag with a null byte followed by a format string specifier, which is not counted by the mechanism.

    Source:Bernhard Mueller
    Published:31 Oct 2007
    5
    Medium

    CVE-2007-5739

    Last Modified: 5 Jan 2014

    Directory traversal vulnerability in component/flashupload/download.jsp in the FlashUpload component in Korean GHBoard allows remote attackers to read arbitrary files via a .. (dot dot) in the name parameter.

    Source:Xcross87
    Published:30 Oct 2007
    7.5
    High

    CVE-2007-5737

    Last Modified: 23 Oct 2017

    Unrestricted file upload vulnerability in component/upload.jsp in Korean GHBoard allows remote attackers to upload arbitrary files via unspecified vectors, probably involving a direct request.

    Source:Xcross87
    Published:30 Oct 2007
    7.5
    High

    CVE-2007-5733

    Last Modified: 5 Jan 2014

    Unrestricted file upload vulnerability in upload/upload.php in Japanese PHP Gallery Hosting, when Open directory mode is enabled, allows remote attackers to upload and execute arbitrary PHP code via a ServerPath parameter specifying a filename with a double extension. NOTE: some of these details are obtained from third party information.

    Source:Pete Houston
    Published:30 Oct 2007
    3.5
    Low

    CVE-2007-5731

    Last Modified: 25 Oct 2016

    Absolute path traversal vulnerability in Apache Jakarta Slide 2.1 and earlier allows remote authenticated users to read arbitrary files via a WebDAV write request that specifies an entity with a SYSTEM tag, a related issue to CVE-2007-5461.

    Source:kingcope
    Published:30 Oct 2007
    4.3
    Medium

    CVE-2007-5728

    Last Modified: 6 Jan 2017

    Cross-site scripting (XSS) vulnerability in phpPgAdmin 3.5 to 4.1.1, and possibly 4.1.2, allows remote attackers to inject arbitrary web script or HTML via certain input available in PHP_SELF in (1) redirect.php, possibly related to (2) login.php, different vectors than CVE-2007-2865.

    Source:Michal Majchrowicz
    Published:30 Oct 2007
    4.3
    Medium

    CVE-2007-5725

    Last Modified: 6 Jan 2014

    Multiple cross-site scripting (XSS) vulnerabilities in Smart-Shop allow remote attackers to inject arbitrary web script or HTML via (1) the email parameter to index.php; or the command parameter to index.php in (2) the default action for the home page, (3) a currencies action, or (4) a basket action.

    Source:Doz
    Published:30 Oct 2007
    4.3
    Medium

    CVE-2007-5724

    Last Modified: 6 Jan 2014

    Multiple cross-site scripting (XSS) vulnerabilities in Omnistar Live allow remote attackers to inject arbitrary web script or HTML via (1) the category_id parameter to users/kb.php, and possibly (3) the Email Box field in profile.php.

    Source:Doz
    Published:30 Oct 2007
    7.5
    High

    CVE-2007-5722

    Last Modified: 6 Jan 2014

    Stack-based buffer overflow in a certain ActiveX control in GLChat.ocx 2.5.1.32 in GlobalLink 2.7.0.8, as used in Ourgame GLWorld and possibly other products, allows remote attackers to execute arbitrary code via a long first argument to the ConnectAndEnterRoom method, possibly involving the GLCHAT.GLChatCtrl.1 control, as originally exploited in the wild in October 2007. NOTE: some of these details are obtained from third party information. NOTE: this was originally reported as a heap-based issue by some sources.

    Source:anonymous
    Published:30 Oct 2007
    6.8
    Medium

    CVE-2007-5721

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in _theme/breadcrumb.php in MySpacePros MySpace Resource Script (MSRS) 1.21 allows remote attackers to execute arbitrary PHP code via a URL in the rootBase parameter.

    Published:30 Oct 2007
    6.8
    Medium

    CVE-2007-5720

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in the profiles script in ProfileCMS 1.0 allows remote attackers to upload and execute arbitrary PHP code via unspecified vectors involving creation of a profile.

    Published:30 Oct 2007
    7.5
    High

    CVE-2007-5719

    Last Modified: 24 Nov 2016

    SQL injection vulnerability in bb_func_search.php in miniBB 2.1 allows remote attackers to execute arbitrary SQL commands via the table parameter to index.php.

    Source:irk4z
    Published:30 Oct 2007
    2.6
    Low

    CVE-2007-5710

    Last Modified: 4 May 2017

    Cross-site scripting (XSS) vulnerability in wp-admin/edit-post-rows.php in WordPress 2.3 allows remote attackers to inject arbitrary web script or HTML via the posts_columns array parameter.

    Source:waraxe
    Published:30 Oct 2007
    9.3
    Critical

    CVE-2007-5709

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Sony SonicStage CONNECT Player (CP) 4.3 allows remote attackers to execute arbitrary code via a long file name in an M3U file.

    Source:TaMBaRuS
    Published:30 Oct 2007
    9.3
    Critical

    CVE-2007-5706

    Last Modified: 5 Jan 2014

    Absolute path traversal vulnerability in download.php in Jeebles Directory 2.9.60 allows remote attackers to read arbitrary files via a full pathname in the query string. NOTE: some of these details are obtained from third party information.

    Source:hack2prison
    Published:29 Oct 2007
    6.8
    Medium

    CVE-2007-5699

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in eIQNetworks Enterprise Security Analyzer (ESA) 2.5 allows remote attackers to execute arbitrary code via certain data on TCP port 10616 that results in a long argument to the SEARCHREPORT command, a different vector than CVE-2007-2059.

    Source:ri0t
    Published:29 Oct 2007
    6.8
    Medium

    CVE-2007-5697

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in PHP Image 1.2 allow remote attackers to execute arbitrary PHP code via a URL in the xarg parameter to (1) xarg_corner.php, (2) xarg_corner_bottom.php, and (3) xarg_corner_top.php.

    Source:Civi
    Published:29 Oct 2007
    6.8
    Medium

    CVE-2007-5694

    Last Modified: 3 Jan 2014

    Absolute path traversal vulnerability in the translation module (translator.php) in SiteBar 3.3.8 allows remote authenticated users to read arbitrary files via an absolute path in the dir parameter, a different vulnerability than CVE-2007-5491.

    Source:Robert Buchholz
    Published:29 Oct 2007
    6
    Medium

    CVE-2007-5693

    Last Modified: 3 Jan 2014

    Eval injection vulnerability in the translation module (translator.php) in SiteBar 3.3.8 allows remote authenticated users to execute arbitrary PHP code via the edit parameter in an upd cmd action, a different vulnerability than CVE-2007-5492.

    Source:Robert Buchholz
    Published:29 Oct 2007
    4.3
    Medium

    CVE-2007-5692

    Last Modified: 3 Jan 2014

    Multiple cross-site scripting (XSS) vulnerabilities in SiteBar 3.3.8 allow remote attackers to inject arbitrary web script or HTML via (1) the lang parameter to integrator.php; (2) the token parameter in a New Password action, (3) the nid_acl parameter in a Folder Properties action, or (4) the uid parameter in a Modify User action to command.php; or (5) the target parameter to index.php, different vectors than CVE-2006-3320.

    Source:Robert Buchholz
    Published:29 Oct 2007
    7.5
    High

    CVE-2007-5688

    Last Modified: 6 Jan 2014

    Multiple SQL injection vulnerabilities in directory.php in the Multi-Forums (aka Multi Host Forum Pro) module 1.3.3, for phpBB and Invision Power Board (IPB or IP.Board), allow remote attackers to execute arbitrary SQL commands via the (1) go and (2) cat parameters.

    Source:KiNgOfThEwOrLd
    Published:29 Oct 2007
    5
    Medium

    CVE-2007-5685

    Last Modified: 6 Jan 2014

    The safe_path function in shttp before 0.0.5 allows remote attackers to conduct directory traversal attacks and read files via a combination of ".." and sub-directory specifiers that resolve to a pathname that is at or below the same level as the web document root, but in a different part of the directory tree.

    Source:Pete Foster
    Published:28 Oct 2007
    7.5
    High

    CVE-2007-5684

    Last Modified: 25 Oct 2016

    Multiple directory traversal vulnerabilities in TikiWiki 1.9.8.1 and earlier allow remote attackers to include and execute arbitrary files via an absolute pathname in (1) error_handler_file and (2) local_php parameters to (a) tiki-index.php, or (3) encoded "..%2F" sequences in the imp_language parameter to tiki-imexport_languages.php.

    Source:L4teral
    Published:26 Oct 2007
    7.5
    High

    CVE-2007-5679

    Last Modified: 21 Dec 2016

    SQL injection vulnerability in index.php in DeeEmm.com DM CMS 0.7.0.Beta allows remote attackers to execute arbitrary SQL commands via the id parameter in the media page (build_media_content.php). NOTE: it was later reported that 0.7.4 is also affected.

    Source:Aria-Security Team
    Published:25 Oct 2007
    4.3
    Medium

    CVE-2007-5677

    Last Modified: 5 Jan 2014

    Cross-site scripting (XSS) vulnerability in shoutbox/blocco.php in Hackish BETA 1.1 allows remote attackers to inject arbitrary web script or HTML via the go_shout parameter.

    Source:Matrix86
    Published:24 Oct 2007
    6.8
    Medium

    CVE-2007-5676

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in modules/Forums/favorites.php in PHP-Nuke Platinum 7.6.b.5 allows remote attackers to execute arbitrary PHP code via a URL in the nuke_bb_root_path parameter.

    Source:BiNgZa
    Published:24 Oct 2007
    6.8
    Medium

    CVE-2007-5674

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in InstaGuide Weather (aka Weather for PHP) 1.0, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the PageName parameter.

    Source:h4ck3r
    Published:24 Oct 2007
    9.3
    Critical

    CVE-2007-5660

    Last Modified: 10 Mar 2011

    Unspecified vulnerability in the Update Service ActiveX control in isusweb.dll before 6.0.100.65101 in MacroVision FLEXnet Connect and InstallShield 2008 allows remote attackers to execute arbitrary code via an unspecified "unsafe method," possibly involving a buffer overflow.

    Source:Metasploit
    Published:2 Nov 2007
    7.8
    High

    CVE-2007-5659

    Last Modified: 21 Jan 2014

    Multiple buffer overflows in Adobe Reader and Acrobat 8.1.1 and earlier allow remote attackers to execute arbitrary code via a PDF file with long arguments to unspecified JavaScript methods. NOTE: this issue might be subsumed by CVE-2008-0655.

    Source:Paul Craig
    Published:8 Feb 2008
    5
    Medium

    CVE-2007-5654

    Last Modified: 23 Apr 2026

    LiteSpeed Web Server before 3.2.4 allows remote attackers to trigger use of an arbitrary MIME type for a file via a "%00." sequence followed by a new extension, as demonstrated by reading PHP source code via requests for .php%00.txt files, aka "Mime Type Injection."

    Source:Tr3mbl3r
    Published:23 Oct 2007
    9.3
    Critical

    CVE-2007-5653

    Last Modified: 14 Feb 2020

    The Component Object Model (COM) functions in PHP 5.x on Windows do not follow safe_mode and disable_functions restrictions, which allows context-dependent attackers to bypass intended limitations, as demonstrated by executing objects with the kill bit set in the corresponding ActiveX control Compatibility Flags, executing programs via a function in compatUI.dll, invoking wscript.shell via wscript.exe, invoking Scripting.FileSystemObject via wshom.ocx, and adding users via a function in shgina.dll, related to the com_load_typelib function.

    Source:shinnai
    Published:23 Oct 2007
    7.5
    High

    CVE-2007-5650

    Last Modified: 5 Jan 2014

    Directory traversal vulnerability in system.php in ReloadCMS 1.2.7 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the module parameter to index.php.

    Source:sekuru
    Published:23 Oct 2007
    4.3
    Medium

    CVE-2007-5649

    Last Modified: 5 Jan 2014

    Cross-site scripting (XSS) vulnerability in lostpwd.php in Creative Digital Resources SocketMail 2.2.1 allows remote attackers to inject arbitrary web script or HTML via the lost_id parameter.

    Source:Ivan Sanchez
    Published:23 Oct 2007
    4.3
    Medium

    CVE-2007-5648

    Last Modified: 19 Oct 2017

    Multiple cross-site scripting (XSS) vulnerabilities in rnote.php in rNote 0.9.7.5 allow remote attackers to inject arbitrary web script or HTML via the (1) d or the (2) u parameter.

    Source:RoMaNcYxHaCkEr
    Published:23 Oct 2007
    4.3
    Medium

    CVE-2007-5647

    Last Modified: 5 Jan 2014

    Multiple cross-site scripting (XSS) vulnerabilities in SocketKB 1.1.5 allow remote attackers to inject arbitrary web script or HTML via the (1) art_id or (2) node parameter in an article action to the default URI.

    Source:Ivan Sanchez
    Published:23 Oct 2007
    6.8
    Medium

    CVE-2007-5646

    Last Modified: 9 Dec 2016

    SQL injection vulnerability in Sources/Search.php in Simple Machines Forum (SMF) 1.1.3, when MySQL 5 is used, allows remote attackers to execute arbitrary SQL commands via the userspec parameter in a search2 action to index.php.

    Source:Michael Brooks
    Published:23 Oct 2007
    7.5
    High

    CVE-2007-5644

    Last Modified: 23 Apr 2026

    Lussumo Vanilla 1.1.3 and earlier does not require admin privileges for (1) ajax/sortcategories.php and (2) ajax/sortroles.php, which allows remote attackers to conduct unauthorized sort operations and other activities.

    Source:InATeam
    Published:23 Oct 2007
    7.5
    High

    CVE-2007-5643

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Lussumo Vanilla 1.1.3 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the CategoryID parameter to ajax/sortcategories.php or (2) an unspecified vector to ajax/sortroles.php.

    Source:InATeam
    Published:23 Oct 2007
    6.8
    Medium

    CVE-2007-5642

    Last Modified: 20 Oct 2016

    Multiple directory traversal vulnerabilities in PHP Project Management 0.8.10 and earlier allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in (1) the def_lang parameter to modules/files/list.php; the m_path parameter to (2) modules/projects/summary.inc.php or (3) modules/tasks/summary.inc.php; (4) the module parameter to modules/projects/list.php; or the module parameter to index.php in the (5) certinfo, (6) emails, (7) events, (8) fax, (9) files, (10) groupadm, (11) history, (12) info, (13) log, (14) mail, (15) messages, (16) organizations, (17) phones, (18) presence, (19) projects, (20) reports, (21) search, (22) snf, (23) syslog, (24) tasks, or (25) useradm subdirectory of modules/.

    Source:GoLd_M
    Published:23 Oct 2007
    6.8
    Medium

    CVE-2007-5641

    Last Modified: 20 Oct 2016

    Multiple PHP remote file inclusion vulnerabilities in PHP Project Management 0.8.10 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the full_path parameter to (1) certinfo/index.php, (2) emails/index.php, (3) events/index.php, (4) fax/index.php, (5) files/index.php, (6) files/list.php, (7) groupadm/index.php, (8) history/index.php, (9) info/index.php, (10) log/index.php, (11) mail/index.php, (12) messages/index.php, (13) organizations/index.php, (14) phones/index.php, (15) presence/index.php, (16) projects/index.php, (17) projects/summary.inc.php, (18) projects/list.php, (19) reports/index.php, (20) search/index.php, (21) snf/index.php, (22) syslog/index.php, (23) tasks/searchsimilar.php, (24) tasks/index.php, (25) tasks/summary.inc.php, and (26) useradm/index.php in modules; (27) /ajax/loadsplash.php; (28) /blocks/birthday.php; (29) /blocks/events.php; and (30) /blocks/help.php.

    Source:GoLd_M
    Published:23 Oct 2007
    4.3
    Medium

    CVE-2007-5637

    Last Modified: 3 Jan 2014

    The Nortel UNIStim IP Softphone 2050, IP Phone 1140E, and additional Nortel products from the IP Phone, Business Communications Manager (BCM), and other product lines allow remote attackers to eavesdrop on the physical environment via an Open Audio Stream message that enables "surveillance mode." NOTE: issues relating to a small ID number space can be leveraged to make this attack easier.

    Source:Daniel Stirnimann
    Published:23 Oct 2007
    7.5
    High

    CVE-2007-5636

    Last Modified: 3 Jan 2014

    Buffer overflow in the Nortel UNIStim IP Softphone 2050 allows remote attackers to cause a denial of service (application abort) and possibly execute arbitrary code via a flood of invalid characters to the RTCP port (5678/udp) that triggers a Windows error message, aka "extraneous messaging."

    Source:Cyrill Brunschwiler
    Published:23 Oct 2007
    7.2
    High

    CVE-2007-5633

    Last Modified: 6 Jan 2014

    Speedfan.sys in Alfredo Milani Comparetti SpeedFan 4.33, when used on Microsoft Windows Vista x64, allows local users to read or write arbitrary MSRs, and gain privileges and load unsigned drivers, via the (1) IOCTL_RDMSR 0x9C402438 and (2) IOCTL_WRMSR 0x9C40243C IOCTLs to \Device\speedfan, as demonstrated by an IOCTL_WRMSR action on MSR_LSTAR.

    Source:Ruben Santamarta
    Published:23 Oct 2007
    6.8
    Medium

    CVE-2007-5631

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in PeopleAggregator 1.2pre6, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the current_blockmodule_path parameter to (1) AudiosMediaGalleryModule/AudiosMediaGalleryModule.php, (2) ImagesMediaGalleryModule/ImagesMediaGalleryModule.php, (3) MembersFacewallModule/MembersFacewallModule.php, (4) NewestGroupsModule/NewestGroupsModule.php, (5) UploadMediaModule/UploadMediaModule.php, and (6) VideosMediaGalleryModule/VideosMediaGalleryModule.php in BetaBlockModules/; and (7) the path_prefix parameter to several components.

    Source:GoLd_M
    Published:23 Oct 2007
    7.5
    High

    CVE-2007-5630

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in tnews.php in BBsProcesS BBPortalS 1.5.10 through 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter in a tnews action.

    Source:Max007
    Published:23 Oct 2007
    6.8
    Medium

    CVE-2007-5628

    Last Modified: 20 Oct 2016

    PHP remote file inclusion vulnerability in src/scripture.php in The Online Web Library Site (TOWels) 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the pageHeaderFile parameter.

    Source:GoLd_M
    Published:23 Oct 2007
    6.8
    Medium

    CVE-2007-5627

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in content/fnc-readmail3.php in SocketMail 2.2.8 allows remote attackers to execute arbitrary PHP code via a URL in the __SOCKETMAIL_ROOT parameter.

    Source:BiNgZa
    Published:23 Oct 2007
    4.3
    Medium

    CVE-2007-5625

    Last Modified: 20 Oct 2017

    Cross-site scripting (XSS) vulnerability in filename.asp in ASP Site Search SearchSimon Lite 1.0 allows remote attackers to inject arbitrary web script or HTML via the QUERY parameter.

    Source:Aria-Security Team
    Published:23 Oct 2007