7.5
    High

    CVE-2007-4173

    Last Modified: 24 Dec 2013

    SQL injection vulnerability in duyuruoku.asp in Hunkaray Okul Portali 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2007-3080.

    Source:Yollubunlar.Org
    Published:7 Aug 2007
    7.5
    High

    CVE-2007-4171

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in komentar.php in the Forum Module for auraCMS (Modul Forum Sederhana) allows remote attackers to execute arbitrary SQL commands via the id parameter to the default URI. NOTE: some of these details are obtained from third party information.

    Source:k1tk4t
    Published:7 Aug 2007
    7.5
    High

    CVE-2007-4156

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in wolioCMS allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to member.php in a page action, related to a SELECT statement in common.php; and the (2) loginid parameter (uid variable), and possibly the (3) pwd parameter, to admin/index.php.

    Source:k1tk4t
    Published:3 Aug 2007
    9.3
    Critical

    CVE-2007-4155

    Last Modified: 23 Apr 2026

    Absolute path traversal vulnerability in a certain ActiveX control in vielib.dll in EMC VMware 6.0.0 allows remote attackers to execute arbitrary local programs via a full pathname in the first two arguments to the (1) CreateProcess or (2) CreateProcessEx method.

    Source:callAX
    Published:3 Aug 2007
    4.3
    Medium

    CVE-2007-4146

    Last Modified: 23 Dec 2013

    Cross-site scripting (XSS) vulnerability in webevent.cgi in WebEvent 2.61 through 4.03 allows remote attackers to inject arbitrary web script or HTML via the cmd parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:d3hydr8
    Published:3 Aug 2007
    4.3
    Medium

    CVE-2007-4145

    Last Modified: 23 Dec 2013

    Heap-based buffer overflow in the BlueSkychat (BlueSkyCat) ActiveX control (V2.V2Ctrl.1) in v2.ocx 8.1.2.0 and earlier allows remote attackers to execute arbitrary code via a long string in the second argument to the ConnecttoServer method.

    Source:Code Audit Labs
    Published:3 Aug 2007
    4
    Medium

    CVE-2007-4143

    Last Modified: 23 Dec 2013

    user.php in the Billing Control Panel in phpCoupon allows remote authenticated users to obtain Premium Member status, and possibly acquire free coupons, via a modified URL containing a certain billing parameter and REQ=auth, status=success, and custom=upgrade substrings, possibly related to PayPal transactions.

    Source:freeprotect.net
    Published:3 Aug 2007
    6.8
    Medium

    CVE-2007-4140

    Last Modified: 23 Apr 2026

    Buffer overflow in Live for Speed (LFS) S2 ALPHA PATCH 0.5x allows user-assisted remote attackers to execute arbitrary code via a .mpr file (replay file) that contains a long car name.

    Source:n00b
    Published:3 Aug 2007
    7.5
    High

    CVE-2007-4128

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in the Firestorm Technologies GMaps (com_gmaps) 1.00 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the mapId parameter in a viewmap action.

    Source:Mehmet Ince
    Published:1 Aug 2007
    6.8
    Medium

    CVE-2007-4127

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in check_entry.php in Ralf Image Gallery (RIG), aka Raphael Moll RIG Image Gallery, 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the dir_abs_src parameter. NOTE: this issue is disputed by multiple third parties, who report that the product exits if register_globals is enabled, thereby blocking exploitation. NOTE: CVE-2006-3210.a covers this issue in versions before 1.0

    Source:Aesthetico
    Published:1 Aug 2007
    7.5
    High

    CVE-2007-4119

    Last Modified: 23 Dec 2013

    Multiple SQL injection vulnerabilities in yonetici.asp in Berthanas Ziyaretci Defteri 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) user and (2) Pass fields.

    Source:Yollubunlar
    Published:1 Aug 2007
    6.8
    Medium

    CVE-2007-4116

    Last Modified: 23 Dec 2013

    SQL injection vulnerability in philboard_forum.asp in Metyus Forum Portal 1.0 allows remote attackers to execute arbitrary SQL commands via the forumid parameter. NOTE: this might be related to CVE-2007-0920 or CVE-2007-3884.

    Source:Cr@zy_King
    Published:31 Jul 2007
    4.3
    Medium

    CVE-2007-4115

    Last Modified: 23 Dec 2013

    Multiple cross-site scripting (XSS) vulnerabilities in IT!CMS (itcms) 0.2 allow remote attackers to inject arbitrary web script or HTML via the wndtitle parameter to (1) lang-en.php, (2) menu-ed.php, or (3) titletext-ed.php.

    Source:Aria-Security Team
    Published:31 Jul 2007
    6.8
    Medium

    CVE-2007-4111

    Last Modified: 23 Dec 2013

    SQL injection vulnerability in the login script in Real Estate listing website application template, when logging in as user or manager, allows remote attackers to execute arbitrary SQL commands via the Password parameter.

    Source:Aria-Security Team
    Published:31 Jul 2007
    7.5
    High

    CVE-2007-4110

    Last Modified: 23 Dec 2013

    SQL injection vulnerability in sign_in.aspx in Message Board / Threaded Discussion Forum Application Template allows remote attackers to execute arbitrary SQL commands via the Password parameter.

    Source:Aria-Security Team
    Published:31 Jul 2007
    7.5
    High

    CVE-2007-4109

    Last Modified: 23 Dec 2013

    SQL injection vulnerability in sign_in.aspx in WebStore (Online Store Application Template) allows remote attackers to execute arbitrary SQL commands via the Password parameter.

    Source:Aria-Security Team
    Published:31 Jul 2007
    6.8
    Medium

    CVE-2007-4106

    Last Modified: 23 Dec 2013

    SQL injection vulnerability in login.asp in CodeWidgets Pay Roll - Time Sheet and Punch Card Application With Web Interface allows remote attackers to execute arbitrary SQL commands via the Password parameter.

    Source:Aria-Security Team
    Published:31 Jul 2007
    9.3
    Critical

    CVE-2007-4105

    Last Modified: 23 Dec 2013

    A certain ActiveX control in BaiduBar.dll in Baidu Soba Search Bar 5.4 allows remote attackers to execute arbitrary code via a request containing "a link to download and a file to execute," possibly involving remote file inclusion.

    Source:cocoruder
    Published:31 Jul 2007
    4.3
    Medium

    CVE-2007-4104

    Last Modified: 17 Dec 2013

    Multiple cross-site scripting (XSS) vulnerabilities in the WP-FeedStats before 2.4 plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, one of which involves an rss2 feed with an invalid or missing blog with an XSS sequence in the query string.

    Source:David Kierznowski
    Published:31 Jul 2007
    6.8
    Medium

    CVE-2007-4101

    Last Modified: 23 Dec 2013

    Multiple PHP remote file inclusion vulnerabilities in Madoa Poll 1.1 allow remote attackers to execute arbitrary PHP code via the Madoa parameter to (1) index.php, (2) vote.php, and (3) admin.php.

    Source:ilker Kandemir
    Published:31 Jul 2007
    7.5
    High

    CVE-2007-4095

    Last Modified: 17 Dec 2013

    SQL injection vulnerability in BSM Store Dependent Forums 1.02 allows remote attackers to execute arbitrary SQL commands via a Username field in an unspecified component, probably the FrmUserName parameter in login.asp.

    Source:Aria-Security Team
    Published:30 Jul 2007
    5
    Medium

    CVE-2007-4092

    Last Modified: 17 Dec 2013

    Directory traversal vulnerability in index.php in iFoto 1.0.1 and earlier allows remote attackers to list arbitrary directories, and possibly download arbitrary photos, via a .. (dot dot) in the dir parameter.

    Source:Lostmon
    Published:30 Jul 2007
    4.3
    Medium

    CVE-2007-4089

    Last Modified: 23 Dec 2016

    Vikingboard 0.1.2 allows remote attackers to obtain sensitive information via the debug parameter to (1) forum.php, (2) cp.php, and possibly other unspecified components.

    Source:Lostmon
    Published:30 Jul 2007
    4.3
    Medium

    CVE-2007-4088

    Last Modified: 23 Dec 2016

    Multiple cross-site scripting (XSS) vulnerabilities in Vikingboard 0.1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) id, (2) f, (3) quote, and (4) act parameters to cp.php; the (5) u parameter to user.php; the (6) f parameter to post.php; the (7) s parameter to topic.php; the (8) quote, (9) t, (10) poll, and (11) p parameters to post.php; the (12) Message Title field of a private message (PM) in mode 6 of cp.php; the (13) title field of a private message (PM) in mode 7 of cp.php; and (14) allow user-assisted remote attackers to inject arbitrary web script or HTML via a dosearch action to search.php, which reflects the first lines of all posts by a user. NOTE: the act parameter to help.php and the p parameter to report.php are already covered by CVE-2006-4708. NOTE: vectors 12 and 13 might overlap CVE-2006-6283.1. NOTE: vector 14 might overlap CVE-2006-4708.b.

    Source:Lostmon
    Published:30 Jul 2007
    6.8
    Medium

    CVE-2007-4085

    Last Modified: 6 Dec 2016

    Multiple SQL injection vulnerabilities in AlstraSoft AskMe Pro allow remote attackers to execute arbitrary SQL commands via the (1) que_id parameter to forum_answer.php or (2) the cat_id parameter to search.php.

    Source:v3n0m
    Published:30 Jul 2007
    7.5
    High

    CVE-2007-4084

    Last Modified: 14 Dec 2016

    Multiple SQL injection vulnerabilities in AlstraSoft Affiliate Network Pro allow remote attackers to execute arbitrary SQL commands via (1) the pgmid parameter in an uploadProducts action to merchants/index.php and possibly (2) the rowid parameter to merchants/temp.php.

    Source:Lostmon
    Published:30 Jul 2007
    4.3
    Medium

    CVE-2007-4081

    Last Modified: 14 Dec 2016

    Multiple cross-site scripting (XSS) vulnerabilities in AlstraSoft Affiliate Network Pro allow remote attackers to inject arbitrary web script or HTML via vectors in (a) merchants/index.php, including the (1) id or (2) msg parameter in a programedit action; the (3) pgmid parameter in an uploadProducts action; the (4) d, (5) m, or (6) y parameter in a daily action; the (7) err parameter in a ProgramReport action; the (8) i, (9) txtto, (10) txtfrom, or (11) programs parameter in a LinkReport action; or the (12) msg parameter in an add_money action; and one vector in (b) merchants/temp.php using (13) the rowid parameter. NOTE: vector 7 might overlap CVE-2005-3795.1.

    Source:Lostmon
    Published:30 Jul 2007
    4.3
    Medium

    CVE-2007-4079

    Last Modified: 16 Dec 2013

    Multiple cross-site scripting (XSS) vulnerabilities in AlstraSoft SMS Text Messaging Enterprise allow remote attackers to inject arbitrary web script or HTML via the (1) domain or (2) q parameter to (a) admin/membersearch.php, or (3) the userid parameter to (b) admin/edituser.php.

    Source:Lostmon
    Published:30 Jul 2007
    7.5
    High

    CVE-2007-4076

    Last Modified: 16 Dec 2013

    Multiple SQL injection vulnerabilities in index.asp in Alisveris Sitesi Scripti allow remote attackers to execute arbitrary SQL commands via the (1) product_id or (2) cat_id parameter in a product mod action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:GeFORC3
    Published:30 Jul 2007
    4.3
    Medium

    CVE-2007-4075

    Last Modified: 16 Dec 2013

    Cross-site scripting (XSS) vulnerability in index.asp in Alisveris Sitesi Scripti allows remote attackers to inject arbitrary web script or HTML via the q parameter in a search mod action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:GeFORC3
    Published:30 Jul 2007
    7.5
    High

    CVE-2007-4069

    Last Modified: 26 Dec 2016

    SQL injection vulnerability in show_cat.php in IndexScript 2.8 and earlier allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.

    Source:xssvgamer
    Published:30 Jul 2007
    5.8
    Medium

    CVE-2007-4068

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Webyapar 2.0 allow remote attackers to execute arbitrary SQL commands via (1) the kat_id parameter to the default URI in a download action or (2) the id parameter to the default URI in a duyurular_detay action.

    Source:bypass
    Published:30 Jul 2007
    9.3
    Critical

    CVE-2007-4067

    Last Modified: 23 Apr 2026

    Absolute path traversal vulnerability in the clInetSuiteX6.clWebDav ActiveX control in CLINETSUITEX6.OCX in Clever Internet ActiveX Suite 6.2 allows remote attackers to create or overwrite arbitrary files via a full pathname in the second argument to the GetToFile method. NOTE: some of these details are obtained from third party information.

    Source:shinnai
    Published:30 Jul 2007
    7.8
    High

    CVE-2007-4062

    Last Modified: 23 Apr 2026

    The SCANCTRL.ScanCtrlCtrl.1 ActiveX control in scan.dll in Nessus Vulnerability Scanner 3.0.6 allows remote attackers to delete arbitrary files via unspecified vectors involving the deleteNessusRC method, probably a directory traversal vulnerability.

    Source:h07
    Published:30 Jul 2007
    9.3
    Critical

    CVE-2007-4061

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in a certain ActiveX control in Nessus Vulnerability Scanner 3.0.6 allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the argument to the saveNessusRC method, which writes text specified by the addsetConfig method, possibly related to the SCANCTRL.ScanCtrlCtrl.1 ActiveX control in scan.dll. NOTE: this can be leveraged for code execution by writing to a Startup folder.

    Source:h07
    Published:30 Jul 2007
    9
    Critical

    CVE-2007-4060

    Last Modified: 12 Oct 2016

    Multiple buffer overflows in the HttpSprockMake function in http.c in Frank Yaul corehttp 0.5.3alpha allow remote attackers to execute arbitrary code via a long string in the (1) method name or (2) URI in an HTTP request.

    Source:vade79
    Published:30 Jul 2007
    5.8
    Medium

    CVE-2007-4059

    Last Modified: 23 Apr 2026

    Absolute path traversal vulnerability in a certain ActiveX control in IntraProcessLogging.dll 5.5.3.42958 in EMC VMware allows remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the SetLogFileName method.

    Source:callAX
    Published:30 Jul 2007
    4.3
    Medium

    CVE-2007-4058

    Last Modified: 23 Apr 2026

    Absolute path traversal vulnerability in a certain ActiveX control in vielib.dll 2.2.5.42958 in EMC VMware 6.0.0 allows remote attackers to execute arbitrary local programs via a full pathname in the first argument to the StartProcess method.

    Source:callAX
    Published:30 Jul 2007
    6.5
    Medium

    CVE-2007-4057

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in pfs.php in Neocrome Seditio 121 and earlier allows remote authenticated users to upload arbitrary PHP code via a filename ending with (1) .php.gif, (2) .php.jpg, or (3) .php.png.

    Source:A.D.T
    Published:30 Jul 2007
    7.5
    High

    CVE-2007-4056

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in directory.php in Prozilla Adult Directory allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action. NOTE: the original report indicated that this was the "photo" SourceForge project (aka Maan Bsat Photo Collection), but that was incorrect.

    Source:t0pP8uZz
    Published:30 Jul 2007
    7.5
    High

    CVE-2007-4055

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in comments_get.asp in SimpleBlog 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: this may be related to CVE-2006-4300.

    Source:g00ns
    Published:30 Jul 2007
    7.5
    High

    CVE-2007-4054

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in category.php in PHP123 Top Sites allows remote attackers to execute arbitrary SQL commands via the cat parameter.

    Source:t0pP8uZz
    Published:30 Jul 2007
    7.5
    High

    CVE-2007-4053

    Last Modified: 17 Nov 2016

    SQL injection vulnerability in include/img_view.class.php in LinPHA 1.3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the order parameter to new_images.php.

    Source:EgiX
    Published:30 Jul 2007
    4.3
    Medium

    CVE-2007-4052

    Last Modified: 17 Dec 2013

    Cross-site scripting (XSS) vulnerability in utilities/login.asp in nukedit 4.9.7 and earlier allows remote attackers to inject arbitrary web script or HTML via the email parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:d3hydr8
    Published:30 Jul 2007
    6.4
    Medium

    CVE-2007-4047

    Last Modified: 16 Dec 2013

    geoBlog (aka BitDamaged) 1 does not require authentication for (1) deletecomment.php, (2) deleteblog.php, and (3) listcomment.php in admin/, which allows remote attackers to delete arbitrary comments, delete arbitrary blogs, and have other unspecified impact via a request with a valid id parameter.

    Source:joseph.giron13
    Published:27 Jul 2007
    7.5
    High

    CVE-2007-4046

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in the Pony Gallery (com_ponygallery) 1.5 and earlier component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter.

    Source:ajann
    Published:27 Jul 2007
    9.3
    Critical

    CVE-2007-4034

    Last Modified: 12 Oct 2016

    Stack-based buffer overflow in the YDPCTL.YDPControl.1 (aka Yahoo! Installer Plugin for Widgets) ActiveX control before 2007.7.13.3 (20070620) in YDPCTL.dll in Yahoo! Widgets before 4.0.5 allows remote attackers to execute arbitrary code via a long argument to the GetComponentVersion method. NOTE: some of these details are obtained from third party information.

    Source:lhoang8500
    Published:27 Jul 2007
    7.5
    High

    CVE-2007-4033

    Last Modified: 17 Dec 2013

    Buffer overflow in the intT1_EnvGetCompletePath function in lib/t1lib/t1env.c in t1lib 5.1.1 allows context-dependent attackers to execute arbitrary code via a long FileName parameter. NOTE: this issue was originally reported to be in the imagepsloadfont function in php_gd2.dll in the gd (PHP_GD2) extension in PHP 5.2.3.

    Source:r0ut3r
    Published:26 Jul 2007
    6.8
    Medium

    CVE-2007-4032

    Last Modified: 23 Apr 2026

    Buffer overflow in CrystalPlayer Pro 1.98 allows user-assisted remote attackers to execute arbitrary code via a long string in a .mls Playlist file.

    Source:Arham Muhammad
    Published:27 Jul 2007
    7.8
    High

    CVE-2007-4031

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in a certain ActiveX control in Nessus Vulnerability Scanner 3.0.6 allows remote attackers to delete arbitrary files via a .. (dot dot) in the argument to the deleteReport method, probably related to the SCANCTRL.ScanCtrlCtrl.1 ActiveX control in scan.dll.

    Source:h07
    Published:27 Jul 2007