7.5
    High

    CVE-2007-5620

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in admin/inc/help.php in ZZ:FlashChat 3.1 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the file parameter.

    Source:d3hydr8
    Published:22 Oct 2007
    10
    Critical

    CVE-2007-5610

    Last Modified: 25 Feb 2014

    The DeleteSingleFile function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to delete an arbitrary file via a full pathname in the argument.

    Source:Dennis Rand
    Published:4 Jun 2008
    7.5
    High

    CVE-2007-5607

    Last Modified: 25 Feb 2014

    Buffer overflow in the RegistryString function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary code via a long first argument, a different vulnerability than CVE-2007-5604, CVE-2007-5605, and CVE-2007-5606.

    Source:Dennis Rand
    Published:4 Jun 2008
    7.5
    High

    CVE-2007-5604

    Last Modified: 24 Feb 2014

    Buffer overflow in the ExtractCab function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary code via a long first argument, a different vulnerability than CVE-2007-5605, CVE-2007-5606, and CVE-2007-5607.

    Source:Dennis Rand
    Published:4 Jun 2008
    9.3
    Critical

    CVE-2007-5603

    Last Modified: 22 Nov 2017

    Stack-based buffer overflow in the SonicWall SSL-VPN NetExtender NELaunchCtrl ActiveX control before 2.1.0.51, and 2.5.x before 2.5.0.56, allows remote attackers to execute arbitrary code via a long string in the second argument to the AddRouteEntry method.

    Source:krafty
    Published:5 Nov 2007
    9.3
    Critical

    CVE-2007-5601

    Last Modified: 10 Mar 2011

    Stack-based buffer overflow in the Database Component in MPAMedia.dll in RealNetworks RealPlayer 10.5 and 11 beta, and earlier versions including 10, RealOne Player, and RealOne Player 2, allows remote attackers to execute arbitrary code via certain playlist names, as demonstrated via the import method to the IERPCtl ActiveX control in ierpplug.dll.

    Source:Metasploit
    Published:20 Oct 2007
    6.8
    Medium

    CVE-2007-5600

    Last Modified: 20 Oct 2016

    Incomplete blacklist vulnerability in index.php in Artmedic CMS 3.4 and earlier allows remote attackers to execute arbitrary PHP code via a (1) UNC share pathname, or a (2) ftps, (3) ssh2.sftp, or (4) ssh2.scp URL, in the page parameter, for which PHP remote file inclusion is blocked only for http, https, and ftp URLs.

    Source:iNs
    Published:19 Oct 2007
    6.8
    Medium

    CVE-2007-5592

    Last Modified: 20 Oct 2016

    Multiple PHP remote file inclusion vulnerabilities in awzMB 4.2 beta 1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the Setting[OPT_includepath] parameter to (1) adminhelp.php; and (2) admin.incl.php, (3) reg.incl.php, (4) help.incl.php, (5) gbook.incl.php, and (6) core/core.incl.php in modules/.

    Source:S.W.A.T.
    Published:19 Oct 2007
    4.3
    Medium

    CVE-2007-5589

    Last Modified: 6 Jan 2014

    Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.11.1.2 allow remote attackers to inject arbitrary web script or HTML via certain input available in (1) PHP_SELF in (a) server_status.php, and (b) grab_globals.lib.php, (c) display_change_password.lib.php, and (d) common.lib.php in libraries/; and certain input available in PHP_SELF and (2) PATH_INFO in libraries/common.inc.php. NOTE: there might also be other vectors related to (3) REQUEST_URI.

    Source:Omer Singer
    Published:19 Oct 2007
    6.9
    Medium

    CVE-2007-5587

    Last Modified: 6 Jan 2014

    Buffer overflow in Macrovision SafeDisc secdrv.sys before 4.3.86.0, as shipped in Microsoft Windows XP SP2, XP Professional x64 and x64 SP2, Server 2003 SP1 and SP2, and Server 2003 x64 and x64 SP2 allows local users to overwrite arbitrary memory locations and gain privileges via a crafted argument to a METHOD_NEITHER IOCTL, as originally discovered in the wild.

    Source:Elia Florio
    Published:19 Oct 2007
    7.8
    High

    CVE-2007-5583

    Last Modified: 23 Apr 2026

    Cisco IP Phone 7940 with firmware P0S3-08-7-00 allows remote attackers to cause a denial of service ("486 Busy" responses or device reboot) via a sequence of SIP INVITE transactions in which the Request-URI lacks a user name, a different vulnerability than CVE-2007-4459.

    Source:MADYNES
    Published:18 Dec 2007
    7.5
    High

    CVE-2007-5579

    Last Modified: 5 Jan 2017

    login.php in Pligg CMS 9.5 uses a guessable confirmation code when resetting a forgotten password, which allows remote attackers with knowledge of a username to reset that user's password by calculating the confirmationcode parameter.

    Source:242th section
    Published:18 Oct 2007
    6.8
    Medium

    CVE-2007-5574

    Last Modified: 20 Oct 2016

    PHP remote file inclusion vulnerability in djpage.php in PHPDJ 0.5 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.

    Source:GoLd_M
    Published:18 Oct 2007
    6.8
    Medium

    CVE-2007-5573

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in classes/core/language.php in LimeSurvey 1.5.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the rootdir parameter.

    Source:S.W.A.T.
    Published:18 Oct 2007
    7.5
    High

    CVE-2007-5567

    Last Modified: 6 Jan 2014

    PHP remote file inclusion vulnerability in _lib/fckeditor/upload_config.php in Galmeta Post 0.11 allows remote attackers to execute arbitrary PHP code via a URL in the DDS parameter.

    Source:arfis project
    Published:18 Oct 2007
    4.3
    Medium

    CVE-2007-5562

    Last Modified: 3 Jan 2014

    Cross-site scripting (XSS) vulnerability in cgi-bin/welcome (aka the login page) in Netgear SSL312 PROSAFE SSL VPN-Concentrator 25 allows remote attackers to inject arbitrary web script or HTML via the err parameter in the context of an error page.

    Source:SkyOut
    Published:18 Oct 2007
    6.5
    Medium

    CVE-2007-5511

    Last Modified: 27 Oct 2017

    SQL injection vulnerability in Workspace Manager for Oracle Database before OWM 10.2.0.4.1, OWM 10.1.0.8.0, and OWM 9.2.0.8.0 allows attackers to execute arbitrary SQL commands via the FINDRICSET procedure in the LT package. NOTE: this is probably covered by CVE-2007-5510, but there are insufficient details to be certain.

    Source:sh2kerr
    Published:17 Oct 2007
    6.5
    Medium

    CVE-2007-5508

    Last Modified: 23 Oct 2017

    Multiple SQL injection vulnerabilities in the CTXSYS Intermedia application for the Oracle Text component (CTX_DOC) in Oracle Database 10.1.0.5 and 10.2.0.3 allow remote authenticated users to execute arbitrary SQL commands via the (1) THEMES, (2) GIST, (3) TOKENS, (4) FILTER, (5) HIGHLIGHT, and (6) MARKUP procedures, aka DB03. NOTE: remote unauthenticated attack vectors exist when CTXSYS is used with oracle Application Server.

    Source:sh2kerr
    Published:17 Oct 2007
    7.5
    High

    CVE-2007-5490

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in default.asp in Okul Otomasyon Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:dumenci
    Published:17 Oct 2007
    7.5
    High

    CVE-2007-5489

    Last Modified: 20 Oct 2016

    Directory traversal vulnerability in index.php in Artmedic CMS 3.4 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter.

    Source:iNs
    Published:17 Oct 2007
    7.5
    High

    CVE-2007-5488

    Last Modified: 16 Oct 2017

    Multiple SQL injection vulnerabilities in cdr_addon_mysql in Asterisk-Addons before 1.2.8, and 1.4.x before 1.4.4, allow remote attackers to execute arbitrary SQL commands via the (1) source and (2) destination numbers, and probably (3) SIP URI, when inserting a record.

    Source:Humberto J. Abdelnur
    Published:17 Oct 2007
    9.3
    Critical

    CVE-2007-5487

    Last Modified: 24 Sept 2010

    Stack-based buffer overflow in COWON America jetAudio Basic 7.0.3 allows user-assisted remote attackers to execute arbitrary code via a long URL in an EXTM3U section of a .m3u file.

    Source:h07
    Published:16 Oct 2007
    7.5
    High

    CVE-2007-5485

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in the mg2 1.0 module for KwsPHP allows remote attackers to execute arbitrary SQL commands via the album parameter.

    Source:Mehmet Ince
    Published:16 Oct 2007
    5
    Medium

    CVE-2007-5484

    Last Modified: 13 Oct 2017

    Directory traversal vulnerability in wxis.exe in WWWISIS 7.1 allows local users to read arbitrary files via a .. (dot dot) in the IsisScript parameter to iah.

    Source:JosS
    Published:16 Oct 2007
    4.3
    Medium

    CVE-2007-5480

    Last Modified: 3 Jan 2014

    Multiple cross-site scripting (XSS) vulnerabilities in InnovaAge InnovaShop allow remote attackers to inject arbitrary web script or HTML via the (1) msg parameter to msg.jsp, and the (2) contentid parameter to tc/contents/home001.jsp.

    Source:JosS
    Published:16 Oct 2007
    4.3
    Medium

    CVE-2007-5478

    Last Modified: 3 Jan 2014

    Cross-site scripting (XSS) vulnerability in projects in Nabh Stringbeans Portal (sbportal) 3.2 allows remote attackers to inject arbitrary web script or HTML via the project_name parameter.

    Source:JosS
    Published:16 Oct 2007
    10
    Critical

    CVE-2007-5467

    Last Modified: 23 Apr 2026

    Integer overflow in eXtremail 2.1.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long USER command containing "%s" sequences to the pop3 port (110/tcp), which are expanded to "%%s" before being used in the memmove function, possibly due to an incomplete fix for CVE-2001-1078.

    Source:mu-b
    Published:15 Oct 2007
    10
    Critical

    CVE-2007-5466

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in eXtremail 2.1.1 and earlier allow remote attackers to (1) have an unknown impact by sending multiple long strings to the IMAP port (143/tcp); (2) execute arbitrary code via a long string in an IMAP AUTHENTICATE PLAIN action, involving the ifParseAuthPlain function; (3) execute arbitrary code via a long LOGIN command to the admin interface port (4501/tcp); or (4) execute arbitrary code via a long string in an IMAP AUTHENTICATE LOGIN (aka CRAM-MD5 authentication) action, involving the ifProcImapAuth1 function.

    Source:mu-b
    Published:15 Oct 2007
    7.5
    High

    CVE-2007-5465

    Last Modified: 6 Jan 2017

    Directory traversal vulnerability in doop CMS 1.3.7 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter to an unspecified component.

    Source:vladii
    Published:15 Oct 2007
    6.5
    Medium

    CVE-2007-5464

    Last Modified: 6 Jan 2014

    Stack-based buffer overflow in Live for Speed 0.5X10 and earlier allows remote authenticated users to cause a denial of service (client crash) and possibly execute arbitrary code via a long skin name.

    Source:Luigi Auriemma
    Published:15 Oct 2007
    3.5
    Low

    CVE-2007-5461

    Last Modified: 14 Dec 2016

    Absolute path traversal vulnerability in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0, 5.0.0, 5.5.0 through 5.5.25, and 6.0.0 through 6.0.14, under certain configurations, allows remote authenticated users to read arbitrary files via a WebDAV write request that specifies an entity with a SYSTEM tag.

    Source:h3rcul3s
    Published:14 Oct 2007
    6.8
    Medium

    CVE-2007-5458

    Last Modified: 17 Nov 2016

    SQL injection vulnerability in index.php in the newsletter module 1.0 for KwsPHP, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the newsletter parameter.

    Source:s4mi
    Published:14 Oct 2007
    6.8
    Medium

    CVE-2007-5457

    Last Modified: 11 Oct 2017

    Multiple PHP remote file inclusion vulnerabilities in Michael Dempfle Joomla Flash Uploader (com_jfu or com_joomla_flash_uploader) 2.5.1 component for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter to (1) install.joomla_flash_uploader.php and (2) uninstall.joomla_flash_uploader.php.

    Source:mdx
    Published:14 Oct 2007
    4.3
    Medium

    CVE-2007-5455

    Last Modified: 13 Oct 2017

    Cross-site scripting (XSS) vulnerability in wxis.exe in WWWISIS 7.1 and earlier allows remote attackers to inject arbitrary web script or HTML via a call to the iah/iah.xis IsisScript code, possibly involving the lang or exprSearch parameter.

    Source:JosS
    Published:14 Oct 2007
    8.5
    High

    CVE-2007-5453

    Last Modified: 23 Apr 2026

    Multiple eval injection vulnerabilities in Php-Stats 0.1.9.2 allow remote authenticated administrators to execute arbitrary code by writing PHP sequences to the php-stats-options record in the _options table, which is used in an eval function call by (1) admin.php, (2) click.php, (3) download.php, and unspecified other files, as demonstrated by modifying _options through a backup restore action in admin.php.

    Source:EgiX
    Published:14 Oct 2007
    10
    Critical

    CVE-2007-5452

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in php-stats.recjs.php in Php-Stats 0.1.9.2 allow remote attackers to execute arbitrary SQL commands via the (1) ip or (2) t parameter.

    Source:EgiX
    Published:14 Oct 2007
    6.8
    Medium

    CVE-2007-5451

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in admin.color.php in the com_colorlab (aka com_color) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.

    Source:Mehmet Ince
    Published:14 Oct 2007
    9.3
    Critical

    CVE-2007-5450

    Last Modified: 2 Mar 2018

    Unspecified vulnerability in Safari on the Apple iPod touch (aka iTouch) and iPhone 1.1.1 allows user-assisted remote attackers to cause a denial of service (application crash), and enable filesystem browsing by the local user, via a certain TIFF file.

    Source:Niacin & Dre
    Published:14 Oct 2007
    7.5
    High

    CVE-2007-5449

    Last Modified: 6 Apr 2026

    SQL injection vulnerability in searchresult.php in Softbiz Recipes Portal Script allows remote attackers to execute arbitrary SQL commands via the sbcat_id parameter.

    Source:Khashayar Fereidani
    Published:14 Oct 2007
    4.3
    Medium

    CVE-2007-5447

    Last Modified: 14 Feb 2020

    ioncube_loader_win_5.2.dll in the ionCube Loader 6.5 extension for PHP 5.2.4 does not follow safe_mode and disable_functions restrictions, which allows context-dependent attackers to bypass intended limitations, as demonstrated by reading arbitrary files via the ioncube_read_file function.

    Source:shinnai
    Published:14 Oct 2007
    6.4
    Medium

    CVE-2007-5446

    Last Modified: 23 Apr 2026

    Absolute path traversal vulnerability in a certain ActiveX control in PBEmail7Ax.dll in PBEmail 7 ActiveX Edition allows remote attackers to create or overwrite arbitrary files via a full pathname in the XmlFilePath argument to the SaveSenderToXml method.

    Source:Katatafish
    Published:14 Oct 2007
    7.5
    High

    CVE-2007-5440

    Last Modified: 2 Jan 2014

    Multiple PHP remote file inclusion vulnerabilities in CRS Manager allow remote attackers to execute arbitrary PHP code via a URL in the DOCUMENT_ROOT parameter to (1) index.php or (2) login.php. NOTE: this issue is disputed by CVE, since DOCUMENT_ROOT cannot be modified by an attacker

    Source:iNs
    Published:14 Oct 2007
    7.5
    High

    CVE-2007-5430

    Last Modified: 2 Jan 2014

    Multiple SQL injection vulnerabilities in Stride 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the p parameter to main.php in the Content Management System, (2) the id parameter in a sto cmd action to shop.php in the Merchant subsystem, or the (3) course or (4) provider parameter to detail.php in the Courses subsystem.

    Source:durito
    Published:12 Oct 2007
    4.3
    Medium

    CVE-2007-5429

    Last Modified: 2 Jan 2014

    Cross-site scripting (XSS) vulnerability in index.php in Nucleus 3.01 allows remote attackers to inject arbitrary web script or HTML via the archive parameter.

    Source:MustLive
    Published:12 Oct 2007
    4.3
    Medium

    CVE-2007-5428

    Last Modified: 2 Jan 2014

    Cross-site scripting (XSS) vulnerability in UMI CMS allows remote attackers to inject arbitrary web script or HTML via the search_string parameter to the default URI in search_do/.

    Source:anonymous
    Published:12 Oct 2007
    4.3
    Medium

    CVE-2007-5427

    Last Modified: 2 Jan 2014

    Cross-site scripting (XSS) vulnerability in the com_search component in Joomla! 1.0.13 and earlier allows remote attackers to inject arbitrary web script or HTML via the searchword parameter. NOTE: this might be related to CVE-2007-4189.1.

    Source:MustLive
    Published:12 Oct 2007
    4.3
    Medium

    CVE-2007-5426

    Last Modified: 2 Jan 2014

    Multiple cross-site scripting (XSS) vulnerabilities in ActiveKB NX 2.5.4 allow remote attackers to inject arbitrary web script or HTML via the page parameter to the default URI for some directories, as demonstrated by (1) ActiveKB/ and (2) default/categories/ActiveKB/.

    Source:durito
    Published:12 Oct 2007
    7.5
    High

    CVE-2007-5423

    Last Modified: 19 Oct 2016

    tiki-graph_formula.php in TikiWiki 1.9.8 allows remote attackers to execute arbitrary code via PHP sequences in the f array parameter, which are processed by create_function.

    Source:ShAnKaR
    Published:12 Oct 2007
    5
    Medium

    CVE-2007-5417

    Last Modified: 2 Jan 2014

    Directory traversal vulnerability in index.php in boastMachine (aka bMachine) 2.8 allows remote attackers to read arbitrary files via a .. (dot dot) in the id parameter.

    Source:iNs
    Published:12 Oct 2007
    6.8
    Medium

    CVE-2007-5416

    Last Modified: 12 Oct 2016

    Drupal 5.2 and earlier does not properly unset variables when the input data includes a numeric parameter with a value matching an alphanumeric parameter's hash value, which allows remote attackers to execute arbitrary PHP code by invoking the drupal_eval function through a callback parameter to the default URI, as demonstrated by the _menu[callbacks][1][callback] parameter. NOTE: it could be argued that this vulnerability is due to a bug in the unset PHP command (CVE-2006-3017) and the proper fix should be in PHP; if so, then this should not be treated as a vulnerability in Drupal.

    Source:ShAnKaR
    Published:12 Oct 2007