7.5
    High

    CVE-2007-3882

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in Expert Advisor allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:t0pP8uZz
    Published:18 Jul 2007
    7.5
    High

    CVE-2007-3881

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in Pictures Rating (Picture Rating) allows remote attackers to execute arbitrary SQL commands via the msgid parameter.

    Source:t0pP8uZz
    Published:18 Jul 2007
    6.6
    Medium

    CVE-2007-3876

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in SMB in Apple Mac OS X 10.4.11 allows local users to execute arbitrary code via (1) a long workgroup (-W) option to mount_smbfs or (2) an unspecified manipulation of the command line to smbutil.

    Source:Subreption LLC.
    Published:19 Dec 2007
    6.8
    Medium

    CVE-2007-3872

    Last Modified: 10 Mar 2011

    Multiple stack-based buffer overflows in the Shared Trace Service (OVTrace) service for HP OpenView Operations A.07.50 for Windows, and possibly earlier versions, allow remote attackers to execute arbitrary code via certain crafted requests.

    Source:Metasploit
    Published:9 Aug 2007
    6.5
    Medium

    CVE-2007-3855

    Last Modified: 27 Oct 2016

    Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 allows remote authenticated users to have an unknown impact via (1) SYS.DBMS_DRS in the DataGuard component (DB03), (2) SYS.DBMS_STANDARD in the PL/SQL component (DB10), (3) MDSYS.RTREE_IDX in the Spatial component (DB16), and (4) SQL Compiler (DB17). NOTE: a reliable researcher claims that DB17 is for using Views to perform unauthorized insert, update, or delete actions.

    Source:bunker
    Published:18 Jul 2007
    8.8
    High

    CVE-2007-3845

    Last Modified: 17 Dec 2013

    Mozilla Firefox before 2.0.0.6, Thunderbird before 1.5.0.13 and 2.x before 2.0.0.6, and SeaMonkey before 1.1.4 allow remote attackers to execute arbitrary commands via certain vectors associated with launching "a file handling program based on the file extension at the end of the URI," a variant of CVE-2007-4041. NOTE: the vendor states that "it is still possible to launch a filetype handler based on extension rather than the registered protocol handler."

    Source:Billy Rios
    Published:8 Aug 2007
    4.3
    Medium

    CVE-2007-3844

    Last Modified: 23 Dec 2013

    Mozilla Firefox 2.0.0.5, Thunderbird 2.0.0.5 and before 1.5.0.13, and SeaMonkey 1.1.3 allows remote attackers to conduct cross-site scripting (XSS) attacks with chrome privileges via an addon that inserts a (1) javascript: or (2) data: link into an about:blank document loaded by chrome via (a) the window.open function or (b) a content.location assignment, aka "Cross Context Scripting." NOTE: this issue is caused by a CVE-2007-3089 regression.

    Source:moz_bug_r_a4
    Published:31 Jul 2007
    7.5
    High

    CVE-2007-3840

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in referralUrl.php in Traffic Stats allows remote attackers to execute arbitrary SQL commands via the offset parameter.

    Source:t0pP8uZz
    Published:17 Jul 2007
    2.6
    Low

    CVE-2007-3838

    Last Modified: 16 Dec 2013

    Cross-site scripting (XSS) vulnerability in takeprofedit.php in TBDev.NET DR 11-10-05-BETA-SF1:111005 and earlier allows remote attackers to inject arbitrary web script or HTML via the SRC attribute of a SCRIPT element in the avatar parameter. NOTE: this may be related to the tracker program in the Janitor package. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:PescaoDeth
    Published:17 Jul 2007
    9.3
    Critical

    CVE-2007-3832

    Last Modified: 16 Dec 2013

    Buffer overflow in the AOL Instant Messenger (AIM) protocol handler in AIM.DLL in Cerulean Studios Trillian allows remote attackers to execute arbitrary code via a malformed aim: URI, as demonstrated by a long URI beginning with the aim:///#1111111/ substring.

    Source:Nate Mcfeters
    Published:17 Jul 2007
    9.3
    Critical

    CVE-2007-3831

    Last Modified: 23 Apr 2026

    PHP remote file inclusion in main.php in ISS Proventia Network IPS GX5108 1.3 and GX5008 1.5 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.

    Published:17 Jul 2007
    3.5
    Low

    CVE-2007-3830

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in alert.php in ISS Proventia Network IPS GX5108 1.3 and GX5008 1.5 allows remote attackers to inject arbitrary web script or HTML via the reminder parameter.

    Published:17 Jul 2007
    10
    Critical

    CVE-2007-3824

    Last Modified: 15 Dec 2013

    SQL injection vulnerability in katgoster.asp in MzK Blog (tr) allows remote attackers to execute arbitrary SQL commands via the katID parameter.

    Source:GeFORC3
    Published:17 Jul 2007
    2.6
    Low

    CVE-2007-3822

    Last Modified: 16 Dec 2013

    Multiple cross-site scripting (XSS) vulnerabilities in Webcit before 7.11 allow remote attackers to inject arbitrary web script or HTML via (1) the who parameter to showuser; and other vectors involving (2) calendar mode, (3) bulletin board mode, (4) room names, and (5) uploaded file names.

    Source:Christopher Schwardt
    Published:17 Jul 2007
    7.5
    High

    CVE-2007-3814

    Last Modified: 17 Jan 2017

    Multiple SQL injection vulnerabilities in MKPortal 1.1.1 allow remote attackers to execute arbitrary SQL commands via (1) the idurlo field in the delete_urlo function in (a) index.php in the urlobox module; the iden field in the (2) update_file and (3) del_file functions in (b) index.php in the reviews module; the (4) idnews field in the delete_news function and the (5) idcomm field in the del_comment function in (c) index.php in the news module; the (6) idcomm field in the delete_comments function in (d) index.php in the gallery module; the iden field in the (7) edit_file, (8) update_file, and (9) del_file functions in index.php in the gallery module; the (10) ide and (11) cat fields in the slide_update function in index.php in the gallery module; the iden field in the (12) update_file and (13) del_file functions in (d) index.php in the downloads module; and other unspecified vectors.

    Source:Coloss
    Published:17 Jul 2007
    4.3
    Medium

    CVE-2007-3813

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in include/user.php in the NoBoard BETA module for MKPortal allows remote attackers to execute arbitrary PHP code via a URL in the MK_PATH parameter.

    Source:g00ns
    Published:17 Jul 2007
    7.5
    High

    CVE-2007-3812

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in forums.php in CMScout 1.23 and earlier allows remote attackers to execute arbitrary SQL commands via the f parameter in a forums action to index.php.

    Source:g00ns
    Published:17 Jul 2007
    7.5
    High

    CVE-2007-3811

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in eSyndiCat allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to news.php or (2) the name parameter to page.php.

    Source:d3v1l
    Published:17 Jul 2007
    7.5
    High

    CVE-2007-3810

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in Realtor 747 allows remote attackers to execute arbitrary SQL commands via the categoryid parameter.

    Source:t0pP8uZz
    Published:17 Jul 2007
    7.5
    High

    CVE-2007-3809

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Prozilla Directory Script allow remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action to directory.php, and other unspecified vectors.

    Source:t0pP8uZz
    Published:17 Jul 2007
    7.5
    High

    CVE-2007-3808

    Last Modified: 5 Oct 2016

    SQL injection vulnerability in includes/search.php in paFileDB 3.6 allows remote attackers to execute arbitrary SQL commands via the categories[] parameter in a search action to index.php, a different vector than CVE-2005-2000.

    Source:pUm
    Published:17 Jul 2007
    6.8
    Medium

    CVE-2007-3806

    Last Modified: 12 Oct 2016

    The glob function in PHP 5.2.3 allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via an invalid value of the flags parameter, probably related to memory corruption or an invalid read on win32 platforms, and possibly related to lack of initialization for a glob structure.

    Source:shinnai
    Published:17 Jul 2007
    4.3
    Medium

    CVE-2007-3799

    Last Modified: 8 Dec 2013

    The session_start function in ext/session in PHP 4.x up to 4.4.7 and 5.x up to 5.2.3 allows remote attackers to insert arbitrary attributes into the session cookie via special characters in a cookie that is obtained from (1) PATH_INFO, (2) the session_id function, and (3) the session_start function, which are not encoded or filtered when the new session cookie is generated, a related issue to CVE-2006-0207.

    Source:Stefan Esser
    Published:1 Jun 2007
    9.8
    Critical

    CVE-2007-3798

    Last Modified: 16 Dec 2013

    Integer overflow in print-bgp.c in the BGP dissector in tcpdump 3.9.6 and earlier allows remote attackers to execute arbitrary code via crafted TLVs in a BGP packet, related to an unchecked return value.

    Source:mu-b
    Published:10 Jul 2007
    4.3
    Medium

    CVE-2007-3792

    Last Modified: 15 Dec 2013

    Multiple PHP remote file inclusion vulnerabilities in AzDG Dating Gold 3.0.5 allow remote attackers to execute arbitrary PHP code via a URL in the int_path parameter to (1) header.php, (2) footer.php, or (3) secure.admin.php in templates/.

    Source:mostafa_ragab
    Published:15 Jul 2007
    5.8
    Medium

    CVE-2007-3790

    Last Modified: 5 Oct 2016

    The com_print_typeinfo function in the bz2 extension in PHP 5.2.3 allows context-dependent attackers to cause a denial of service via a long argument.

    Source:shinnai
    Published:15 Jul 2007
    7.5
    High

    CVE-2007-3789

    Last Modified: 15 Dec 2013

    SQL injection vulnerability in admin/index.php in Inmostore 4.0 allows remote attackers to execute arbitrary SQL commands via the Password field. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Keniobats
    Published:15 Jul 2007
    4
    Medium

    CVE-2007-3785

    Last Modified: 5 Oct 2016

    Absolute path traversal vulnerability in a certain ActiveX control in PGPBBox.dll in EldoS SecureBlackbox (sbb) 5.1.0.112 allows remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the SaveToFile method. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:callAX
    Published:15 Jul 2007
    6.4
    Medium

    CVE-2007-3772

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in news/show.php in PsNews 1.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the newspath parameter.

    Source:irk4z
    Published:15 Jul 2007
    5
    Medium

    CVE-2007-3764

    Last Modified: 5 Oct 2016

    The Skinny channel driver (chan_skinny) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a certain data length value in a crafted packet, which results in an "overly large memcpy."

    Source:fbffff
    Published:18 Jul 2007
    5
    Medium

    CVE-2007-3763

    Last Modified: 12 Oct 2016

    The IAX2 channel driver (chan_iax2) in Asterisk before 1.2.22 and 1.4.x before 1.4.8, Business Edition before B.2.2.1, AsteriskNOW before beta7, Appliance Developer Kit before 0.5.0, and s800i before 1.0.2 allows remote attackers to cause a denial of service (crash) via a crafted (1) LAGRQ or (2) LAGRP frame that contains information elements of IAX frames, which results in a NULL pointer dereference when Asterisk does not properly set an associated variable.

    Source:tenkei_ev
    Published:18 Jul 2007
    4.3
    Medium

    CVE-2007-3725

    Last Modified: 16 Dec 2013

    The RAR VM (unrarvm.c) in Clam Antivirus (ClamAV) before 0.91 allows user-assisted remote attackers to cause a denial of service (crash) via a crafted RAR archive, resulting in a NULL pointer dereference.

    Source:Metaeye Security Group
    Published:12 Jul 2007
    5
    Medium

    CVE-2007-3714

    Last Modified: 15 Dec 2013

    Directory traversal vulnerability in Ada Image Server (ImgSvr) 0.6.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the template parameter to the default URI. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: this is probably a different issue than CVE-2004-2464. NOTE: it was later reported that 0.6.21 and earlier is also affected.

    Source:Tim Brown
    Published:11 Jul 2007
    6.8
    Medium

    CVE-2007-3703

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in a certain ActiveX control in sasatl.dll 1.5.0.531 in Zenturi Program Checker (ProgramChecker) Pro allows remote attackers to execute arbitrary code via a long argument to the Fill method. NOTE: this is probably a different issue than CVE-2007-2987.

    Source:callAX
    Published:11 Jul 2007
    5
    Medium

    CVE-2007-3702

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the load function in cgi-bin/mail/mailmachine.cgi in Mail Machine 3.989 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the archives parameter in a Load action.

    Source:H4 / XPK
    Published:11 Jul 2007
    7.5
    High

    CVE-2007-3701

    Last Modified: 15 Dec 2013

    TippingPoint IPS before 20070710 does not properly handle a hex-encoded alternate Unicode '/' (slash) character, which might allow remote attackers to send certain network traffic and avoid detection, as demonstrated by a cmd.exe attack.

    Source:Security-Assessment.com
    Published:11 Jul 2007
    7.5
    High

    CVE-2007-3697

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in phpbb/sendmsg.php in FlashBB 1.1.8 and earlier allows remote attackers to execute arbitrary code via a URL in the phpbb_root_path parameter.

    Source:Kw3[R]Ln
    Published:11 Jul 2007
    4.3
    Medium

    CVE-2007-3694

    Last Modified: 6 Jan 2014

    Cross-site scripting (XSS) vulnerability in login.php in Miro Project Broadcast Machine 0.9.9.9 allows remote attackers to inject arbitrary web script or HTML via the username parameter.

    Source:Hanno Boeck
    Published:14 Nov 2007
    4.3
    Medium

    CVE-2007-3693

    Last Modified: 15 Dec 2013

    Cross-site scripting (XSS) vulnerability in Gobi as of 20070711, built on Helma, allows remote attackers to inject arbitrary web script or HTML via the q parameter to the search function.

    Source:Hanno Boeck
    Published:11 Jul 2007
    6.5
    Medium

    CVE-2007-3687

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in inferno.php in the Inferno Technologies RPG Inferno 2.4 and earlier, a vBulletin module, allows remote authenticated attackers to execute arbitrary SQL commands via the id parameter in a ScanMember do action.

    Source:t0pP8uZz
    Published:11 Jul 2007
    7.5
    High

    CVE-2007-3683

    Last Modified: 5 Oct 2016

    SQL injection vulnerability in pagetopic.php in Aigaion 1.3.3 and earlier allows remote attackers to execute arbitrary SQL commands via the topic_id parameter.

    Source:CypherXero
    Published:11 Jul 2007
    7.5
    High

    CVE-2007-3682

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in OpenLD 1.2.2 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:CypherXero
    Published:11 Jul 2007
    6.6
    Medium

    CVE-2007-3681

    Last Modified: 5 Oct 2016

    The IOCTL 9031 (BIOCGSTATS) handler in the NPF.SYS device driver in WinPcap before 4.0.1 allows local users to overwrite memory and execute arbitrary code via malformed Interrupt Request Packet (Irp) parameters.

    Source:Mario Ballano Bárcena
    Published:11 Jul 2007
    6.9
    Medium

    CVE-2007-3673

    Last Modified: 5 Oct 2016

    Symantec symtdi.sys before 7.0.0, as distributed in Symantec AntiVirus Corporate Edition 9 through 10.1 and Client Security 2.0 through 3.1, Norton AntiSpam 2005, and Norton AntiVirus, Internet Security, Personal Firewall, and System Works 2005 and 2006; allows local users to gain privileges via a crafted Interrupt Request Packet (Irp) in an IOCTL 0x83022323 request to \\symTDI\, which results in memory overwrite.

    Source:Zohiartze Herce
    Published:15 Jul 2007
    4.3
    Medium

    CVE-2007-3670

    Last Modified: 15 Dec 2013

    Argument injection vulnerability in Microsoft Internet Explorer, when running on systems with Firefox installed and certain URIs registered, allows remote attackers to conduct cross-browser scripting attacks and execute arbitrary commands via shell metacharacters in a (1) FirefoxURL or (2) FirefoxHTML URI, which are inserted into the command line that is created when invoking firefox.exe. NOTE: it has been debated as to whether the issue is in Internet Explorer or Firefox. As of 20070711, it is CVE's opinion that IE appears to be failing to properly delimit the URL argument when invoking Firefox, and this issue could arise with other protocol handlers in IE as well. However, Mozilla has stated that it will address the issue with a "defense in depth" fix that will "prevent IE from sending Firefox malicious data."

    Source:Thor Larholm
    Published:10 Jul 2007
    6.8
    Medium

    CVE-2007-3655

    Last Modified: 9 Apr 2014

    Stack-based buffer overflow in javaws.exe in Sun Java Web Start in JRE 5.0 Update 11 and earlier, and 6.0 Update 1 and earlier, allows remote attackers to execute arbitrary code via a long codebase attribute in a JNLP file.

    Source:Daniel Soeder
    Published:10 Jul 2007
    4.3
    Medium

    CVE-2007-3653

    Last Modified: 1 Mar 2014

    Multiple cross-site scripting (XSS) vulnerabilities in Farsi Script (aka FaScript) FaName 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) key or (2) desc parameter to index.php, or (3) the name parameter to page.php.

    Source:Jesper Jurcenoks
    Published:9 Jul 2008
    6.8
    Medium

    CVE-2007-3649

    Last Modified: 22 Nov 2017

    Absolute path traversal vulnerability in a certain ActiveX control in hpqvwocx.dll 2.1.0.556 in Hewlett-Packard (HP) Digital Imaging allows remote attackers to create or overwrite arbitrary files via the second argument to the SaveToFile method.

    Source:shinnai
    Published:10 Jul 2007
    7.5
    High

    CVE-2007-3646

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in FlashGameScript 1.7 and earlier allows remote attackers to execute arbitrary SQL commands via the user parameter in a member action.

    Source:Xenduer77
    Published:10 Jul 2007
    6
    Medium

    CVE-2007-3638

    Last Modified: 16 Dec 2013

    Buffer overflow in Yahoo! Messenger 8.1 allows user-assisted remote authenticated users, who are listed in an address book, to execute arbitrary code via unspecified vectors, aka ZD-00000005. NOTE: this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release actionable advisories. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine.

    Source:Rajesh Sethumadhavan
    Published:10 Jul 2007