4.3
    Medium

    CVE-2007-5255

    Last Modified: 2 Jan 2014

    Cross-site scripting (XSS) vulnerability in Google Mini Search Appliance 3.4.14 allows remote attackers to inject arbitrary web script or HTML via the ie parameter to the /search URI.

    Source:Websecurity
    Published:6 Oct 2007
    5
    Medium

    CVE-2007-5253

    Last Modified: 2 Jan 2014

    c32web.exe in McMurtrey/Whitaker Cart32 before 6.4 allows remote attackers to read arbitrary files via the ImageName parameter in a GetImage action, by appending a NULL byte (%00) sequence followed by an image file extension, as demonstrated by a request for a ".txt%00.gif" file. NOTE: this might be a directory traversal vulnerability.

    Source:Paul Craig
    Published:6 Oct 2007
    9.3
    Critical

    CVE-2007-5248

    Last Modified: 2 Jan 2014

    Multiple format string vulnerabilities in the ID Software Doom 3 engine, as used by Doom 3 1.3.1 and earlier, Quake 4 1.4.2 and earlier, and Prey 1.3 and earlier, when Punkbuster (PB) is enabled, allow remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via format string specifiers in (1) a PB_Y packet to the YPG server or (2) a PB_U packet to UCON. NOTE: this issue might be in Punkbuster itself, but there are insufficient details to be certain.

    Source:Luigi Auriemma
    Published:6 Oct 2007
    9.3
    Critical

    CVE-2007-5244

    Last Modified: 21 Nov 2016

    Stack-based buffer overflow in Borland InterBase LI 8.0.0.53 through 8.1.0.253 on Linux, and possibly unspecified versions on Solaris, allows remote attackers to execute arbitrary code via a long attach request on TCP port 3050 to the open_marker_file function.

    Source:Metasploit
    Published:6 Oct 2007
    9.3
    Critical

    CVE-2007-5243

    Last Modified: 21 Nov 2016

    Multiple stack-based buffer overflows in Borland InterBase LI 8.0.0.53 through 8.1.0.253, and WI 5.1.1.680 through 8.1.0.257, allow remote attackers to execute arbitrary code via (1) a long service attach request on TCP port 3050 to the (a) SVC_attach or (b) INET_connect function, (2) a long create request on TCP port 3050 to the (c) isc_create_database or (d) jrd8_create_database function, (3) a long attach request on TCP port 3050 to the (e) isc_attach_database or (f) PWD_db_aliased function, or unspecified vectors involving the (4) jrd8_attach_database or (5) expand_filename2 function.

    Source:Metasploit
    Published:6 Oct 2007
    4.3
    Medium

    CVE-2007-5235

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in Uebimiau 2.7.2 through 2.7.10 allows remote attackers to inject arbitrary web script or HTML via the f_email parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:cp77fk4r
    Published:6 Oct 2007
    7.5
    High

    CVE-2007-5234

    Last Modified: 12 Oct 2016

    PHP remote file inclusion vulnerability in upload/common/footer.php in Ossigeno CMS 2.2 alpha3 allows remote attackers to execute arbitrary PHP code via a URL in the level parameter.

    Source:Nice Name Crew
    Published:5 Oct 2007
    7.5
    High

    CVE-2007-5233

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in Web Template Management System 1.3 allows remote attackers to execute arbitrary SQL commands via the id parameter in a readmore action.

    Source:bius
    Published:5 Oct 2007
    4.6
    Medium

    CVE-2007-5231

    Last Modified: 30 Nov 2016

    Unrestricted file upload vulnerability in admin/upload_files.php in Zomplog 3.8.1 and earlier allows remote authenticated administrators to upload and execute arbitrary .php files by sending a modified MIME type. NOTE: this can be exploited by unauthenticated attackers by leveraging CVE-2007-5230.

    Source:InATeam
    Published:5 Oct 2007
    7.5
    High

    CVE-2007-5230

    Last Modified: 30 Nov 2016

    admin/upload_files.php in Zomplog 3.8.1 and earlier does not check for administrative credentials, which allows remote attackers to perform administrative actions via a direct request. NOTE: this can be leveraged for code execution by exploiting CVE-2007-5231.

    Source:InATeam
    Published:5 Oct 2007
    6.4
    Medium

    CVE-2007-5229

    Last Modified: 26 Sept 2016

    Cross-site request forgery (CSRF) vulnerability in the FeedBurner FeedSmith 2.2 plugin for WordPress allows remote attackers to change settings and hijack blog feeds via a request to wp-admin/options-general.php that submits parameter values to FeedBurner_FeedSmith_Plugin.php, as demonstrated by the (1) feedburner_url and (2) feedburner_comments_url parameters.

    Source:David Kierznowski
    Published:5 Oct 2007
    4.9
    Medium

    CVE-2007-5225

    Last Modified: 21 Apr 2017

    Integer signedness error in FIFO filesystems (named pipes) on Sun Solaris 8 through 10 allows local users to read the contents of unspecified memory locations via a negative maximum length value to the I_PEEK ioctl.

    Source:Marco Ivaldi
    Published:5 Oct 2007
    7.5
    High

    CVE-2007-5222

    Last Modified: 2 Jan 2014

    SQL injection vulnerability in index.php in MAXdev MDPro (MD-Pro) 1.0.76 allows remote attackers to execute arbitrary SQL commands via a "Firefox ID=" substring in a Referer HTTP header.

    Source:unidentified1_ is
    Published:5 Oct 2007
    6.8
    Medium

    CVE-2007-5221

    Last Modified: 12 Oct 2016

    PHP remote file inclusion vulnerability in mail/childwindow.inc.php in Poppawid 2.7 allows remote attackers to execute arbitrary PHP code via a URL in the form parameter.

    Source:0in
    Published:5 Oct 2007
    6.4
    Medium

    CVE-2007-5219

    Last Modified: 19 Oct 2016

    Directory traversal vulnerability in the CLAVSetting.CLSetting.1 ActiveX control in CLAVSetting.DLL 1.00.1829 in the CLAVSetting module in CyberLink PowerDVD 7.0 allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the argument to the CreateNewFile method.

    Source:rgod
    Published:5 Oct 2007
    4.3
    Medium

    CVE-2007-5218

    Last Modified: 2 Jan 2014

    Cross-site scripting (XSS) vulnerability in index.php in Don Barnes DRBGuestbook 1.1.13 allows remote attackers to inject arbitrary web script or HTML via the action parameter.

    Source:Gokhan
    Published:5 Oct 2007
    6.8
    Medium

    CVE-2007-5217

    Last Modified: 10 Mar 2011

    Stack-based buffer overflow in the ADM4 ActiveX control in adm4.dll in Altnet Download Manager 4.0.0.6, as used in (1) Kazaa 3.2.7 and (2) Grokster, allows remote attackers to execute arbitrary code via a long argument to the Install method. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Metasploit
    Published:5 Oct 2007
    7.6
    High

    CVE-2007-5208

    Last Modified: 6 Mar 2011

    hpssd in Hewlett-Packard Linux Imaging and Printing Project (hplip) 1.x and 2.x before 2.7.10 allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a from address, which is not properly handled when invoking sendmail.

    Source:Metasploit
    Published:11 Oct 2007
    6.8
    Medium

    CVE-2007-5198

    Last Modified: 2 Jan 2014

    Buffer overflow in the redir function in check_http.c in Nagios Plugins before 1.4.10, when running with the -f (follow) option, allows remote web servers to execute arbitrary code via Location header responses (redirects) with a large number of leading "L" characters.

    Source:Nobuhiro Ban
    Published:17 Jun 2007
    4.3
    Medium

    CVE-2007-5190

    Last Modified: 4 Dec 2016

    Multiple cross-site scripting (XSS) vulnerabilities in Alcatel OmniVista 4760 R4.2 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the action parameter to php-bin/Webclient.php or (2) the Langue parameter to the default URI.

    Source:Miguel Angel
    Published:22 Oct 2007
    7.5
    High

    CVE-2007-5187

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in infusions/calendar_events_panel/show_single.php in the Expanded Calendar 2.x module for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the sel parameter.

    Source:Matrix86
    Published:3 Oct 2007
    6.8
    Medium

    CVE-2007-5186

    Last Modified: 12 Oct 2016

    PHP remote file inclusion vulnerability in index.php in Segue CMS 1.8.4 and earlier, when register_globals is disabled, allows remote attackers to execute arbitrary PHP code via a URL in the themesdir parameter, a different vector than CVE-2006-5497. NOTE: this issue was disputed, but the dispute was retracted after additional analysis.

    Source:kezzap66345
    Published:3 Oct 2007
    6.8
    Medium

    CVE-2007-5185

    Last Modified: 12 Oct 2016

    Multiple PHP remote file inclusion vulnerabilities in phpWCMS XT 0.0.7 BETA and earlier allow remote attackers to execute arbitrary PHP code via a URL in the HTML_MENU_DirPath parameter to (1) config_HTML_MENU.php and (2) config_PHPLM.php in phpwcms_template/inc_script/frontend_render/navigation/.

    Source:kezzap66345
    Published:3 Oct 2007
    7.5
    High

    CVE-2007-5184

    Last Modified: 12 Oct 2016

    Format string vulnerability in the SMBDirList function in dirlist.c in SmbFTPD 0.96 allows remote attackers to execute arbitrary code via format string specifiers in a directory name.

    Source:Jerry Illikainen
    Published:3 Oct 2007
    7.5
    High

    CVE-2007-5181

    Last Modified: 2 Jan 2014

    SQL injection vulnerability in detay.asp in Netkamp Emlak Scripti allows remote attackers to execute arbitrary SQL commands via the ilan_id parameter.

    Source:GeFORC3
    Published:3 Oct 2007
    7.5
    High

    CVE-2007-5180

    Last Modified: 2 Jan 2014

    Multiple SQL injection vulnerabilities in Ohesa Emlak Portali allow remote attackers to execute arbitrary SQL commands via the (1) Kategori parameter in satilik.asp and the (2) Emlak parameter in detay.asp.

    Source:GeFORC3
    Published:3 Oct 2007
    6.8
    Medium

    CVE-2007-5178

    Last Modified: 23 Apr 2026

    contrib/mx_glance_sdesc.php in the mx_glance 2.3.3 module for mxBB places a critical security check within a comment because of a missing comment delimiter, which allows remote attackers to conduct remote file inclusion attacks and execute arbitrary PHP code via a URL in the mx_root_path parameter. NOTE: some sources incorrectly state that phpbb_root_path is the affected parameter.

    Source:bd0rk
    Published:3 Oct 2007
    7.5
    High

    CVE-2007-5177

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in the MambAds (com_mambads) 1.5 and earlier component for Mambo allows remote attackers to execute arbitrary SQL commands via the caid parameter.

    Source:Sniper456
    Published:3 Oct 2007
    6.8
    Medium

    CVE-2007-5175

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability lib/base.php in actSite 1.991 Beta allows remote attackers to execute arbitrary PHP code via a URL in the BaseCfg[BaseDir] parameter.

    Source:DNX
    Published:3 Oct 2007
    7.5
    High

    CVE-2007-5174

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in phpinc/news.php in actSite 1.56 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the do parameter.

    Source:DNX
    Published:3 Oct 2007
    6.8
    Medium

    CVE-2007-5173

    Last Modified: 12 Oct 2016

    PHP remote file inclusion vulnerability in includes/openid/Auth/OpenID/BBStore.php in phpBB Openid 0.2.0 allows remote attackers to execute arbitrary PHP code via a URL in the openid_root_path parameter.

    Source:Mehmet Ince
    Published:3 Oct 2007
    4.3
    Medium

    CVE-2007-5158

    Last Modified: 2 Jan 2014

    The focus handling for the onkeydown event in Microsoft Internet Explorer 6.0 allows remote attackers to change field focus and copy keystrokes via a certain use of a JavaScript htmlFor attribute, as demonstrated by changing focus from a textarea to a file upload field, a related issue to CVE-2007-3511.

    Source:Ronald van den Heetkamp
    Published:1 Oct 2007
    6.8
    Medium

    CVE-2007-5157

    Last Modified: 12 Oct 2016

    PHP remote file inclusion vulnerability in phfito-post.php in Alex Kocharin PHP Fidonet Tosser (PhFiTo) 1.3.0 in phpFidoNode allows remote attackers to execute arbitrary PHP code via a URL in the SRC_PATH parameter to phfito-post.

    Source:w0cker
    Published:1 Oct 2007
    7.5
    High

    CVE-2007-5156

    Last Modified: 2 Dec 2016

    Incomplete blacklist vulnerability in editor/filemanager/upload/php/upload.php in FCKeditor, as used in SiteX CMS 0.7.3.beta, La-Nai CMS, Syntax CMS, Cardinal Cms, and probably other products, allows remote attackers to upload and execute arbitrary PHP code via a file whose name contains ".php." and has an unknown extension, which is recognized as a .php file by the Apache HTTP server, a different vulnerability than CVE-2006-0658 and CVE-2006-2529.

    Source:EgiX
    Published:1 Oct 2007
    6.8
    Medium

    CVE-2007-5149

    Last Modified: 12 Oct 2016

    PHP remote file inclusion vulnerability in NewsCMS/news/newstopic_inc.php in North Country Public Radio Public Media Manager (PMM) 1.3 allows remote attackers to execute arbitrary PHP code via a URL in the indir parameter.

    Source:0in
    Published:1 Oct 2007
    4.3
    Medium

    CVE-2007-5142

    Last Modified: 2 Jan 2014

    Cross-site scripting (XSS) vulnerability in buscar.asp in Solidweb Novus 1.0 allows remote attackers to inject arbitrary web script or HTML via the p parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Zutr4
    Published:28 Sept 2007
    6.8
    Medium

    CVE-2007-5140

    Last Modified: 19 Oct 2016

    PHP remote file inclusion vulnerability in includes/archive/archive_topic.php in IntegraMOD Nederland 1.4.2 allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.

    Source:Mehmet Ince
    Published:28 Sept 2007
    6.8
    Medium

    CVE-2007-5139

    Last Modified: 12 Oct 2016

    PHP remote file inclusion vulnerability in admin/include/header.php in chupix 0.2.3, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the repertoire parameter.

    Source:0in
    Published:28 Sept 2007
    6.8
    Medium

    CVE-2007-5138

    Last Modified: 12 Oct 2016

    PHP remote file inclusion vulnerability in forum/forum.php in lustig.cms BETA 2.5 allows remote attackers to execute arbitrary PHP code via a URL in the view parameter.

    Source:GoLd_M
    Published:28 Sept 2007
    7.1
    High

    CVE-2007-5133

    Last Modified: 2 Jan 2014

    Microsoft Windows Explorer (explorer.exe) allows user-assisted remote attackers to cause a denial of service (CPU consumption) via a certain PNG file with a large tEXt chunk that possibly triggers an integer overflow in PNG chunk size handling, as demonstrated by badlycrafted.png.

    Source:Xavier Roche
    Published:27 Sept 2007
    7.5
    High

    CVE-2007-5131

    Last Modified: 29 Nov 2016

    SQL injection vulnerability in index.php in Interspire ActiveKB NX 2.x allows remote attackers to execute arbitrary SQL commands via the catId parameter in a browse action. NOTE: it was separately reported that ActiveKB 1.5 is also affected.

    Source:Luna-Tic/XTErner
    Published:27 Sept 2007
    4.3
    Medium

    CVE-2007-5127

    Last Modified: 31 Dec 2013

    Multiple cross-site scripting (XSS) vulnerabilities in SimpGB 1.46.02 allow remote attackers to inject arbitrary web script or HTML via (1) the l_username parameter to the default URI under admin/ or (2) the l_emoticonlist parameter to admin/emoticonlist.php.

    Source:netVigilance
    Published:27 Sept 2007
    Low

    CVE-2007-5125

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-1171. Reason: This candidate is a duplicate of CVE-2007-1171. Notes: All CVE users should reference CVE-2007-1171 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:DarkFig
    Published:27 Sept 2007
    7.5
    High

    CVE-2007-5123

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in notas.asp in Novus 1.0 allows remote attackers to execute arbitrary SQL commands via the nota_id parameter.

    Source:ka0x
    Published:27 Sept 2007
    7.5
    High

    CVE-2007-5122

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in store_info.php in SoftBiz Classifieds PLUS allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:Khashayar Fereidani
    Published:27 Sept 2007
    4.3
    Medium

    CVE-2007-5120

    Last Modified: 31 Dec 2013

    Multiple cross-site scripting (XSS) vulnerabilities in JSPWiki 2.4.103 and 2.5.139-beta allow remote attackers to inject arbitrary web script or HTML via the (1) group and (2) members parameters in (a) NewGroup.jsp; the (3) edittime parameter in (b) Edit.jsp; the (4) edittime, (5) author, and (6) link parameters in (c) Comment.jsp; the (7) loginname, (8) wikiname, (9) fullname, and (10) email parameters in (d) UserPreferences.jsp and (e) Login.jsp; the (11) r1 and (12) r2 parameters in (f) Diff.jsp; and the (13) changenote parameter in (g) PageInfo.jsp.

    Source:Jason Kratzer
    Published:27 Sept 2007
    9.3
    Critical

    CVE-2007-5117

    Last Modified: 12 Oct 2016

    Multiple PHP remote file inclusion vulnerabilities in FrontAccounting (FA) 1.13, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the path_to_root parameter to (1) access/login.php and (2) includes/lang/language.php, different vectors than CVE-2007-4279.

    Source:kezzap66345
    Published:27 Sept 2007
    5
    Medium

    CVE-2007-5113

    Last Modified: 2 Jan 2014

    report.cgi in Google Urchin allows remote attackers to bypass authentication and obtain sensitive information (web server logs) via certain modified query parameters, as demonstrated using the profile, rid, prefs, n, vid, bd, ed, dt, and gtype parameters, a different vulnerability than CVE-2007-5112.

    Source:MustLive
    Published:26 Sept 2007
    4.3
    Medium

    CVE-2007-5112

    Last Modified: 31 Dec 2013

    Cross-site scripting (XSS) vulnerability in session.cgi (aka the login page) in Google Urchin 5 5.7.03 and earlier allows remote attackers to inject arbitrary web script or HTML via the query string, a different vulnerability than CVE-2007-4713. NOTE: this can be leveraged to capture login credentials in some browsers that support remembered (auto-completed) passwords.

    Source:pagvac
    Published:26 Sept 2007
    4.3
    Medium

    CVE-2007-5111

    Last Modified: 23 Apr 2026

    A certain ActiveX control in EBCRYPT.DLL 2.0 in EB Design ebCrypt allows remote attackers to cause a denial of service (crash) via a string argument to the AddString method.

    Source:shinnai
    Published:26 Sept 2007