5.8
    Medium

    CVE-2007-1293

    Last Modified: 27 Sept 2016

    SQL injection vulnerability in Rigter Portal System (RPS) 6.2, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the categoria parameter to the top-level URI (index.php), possibly related to ver_descarga.php.

    Source:s0cratex
    Published:7 Mar 2007
    7.5
    High

    CVE-2007-1292

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in inlinemod.php in Jelsoft vBulletin before 3.5.8, and before 3.6.5 in the 3.6.x series, might allow remote authenticated users to execute arbitrary SQL commands via the postids parameter. NOTE: the vendor states that the attack is feasible only in circumstances "almost impossible to achieve."

    Source:rgod
    Published:7 Mar 2007
    5.8
    Medium

    CVE-2007-1291

    Last Modified: 19 Nov 2013

    Multiple cross-site scripting (XSS) vulnerabilities in Tyger Bug Tracking System (TygerBT) 1.1.3 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) Login.php and (2) Register.php.

    Source:CorryL
    Published:7 Mar 2007
    6.4
    Medium

    CVE-2007-1289

    Last Modified: 19 Nov 2013

    SQL injection vulnerability in ViewBugs.php in Tyger Bug Tracking System (TygerBT) 1.1.3 allows remote attackers to execute arbitrary SQL commands via the s parameter.

    Source:CorryL
    Published:7 Mar 2007
    4.3
    Medium

    CVE-2007-1287

    Last Modified: 27 Sept 2016

    A regression error in the phpinfo function in PHP 4.4.3 to 4.4.6, and PHP 6.0 in CVS, allows remote attackers to conduct cross-site scripting (XSS) attacks via GET, POST, or COOKIE array values, which are not escaped in the phpinfo output, as originally fixed for CVE-2005-3388.

    Source:Stefan Esser
    Published:6 Mar 2007
    6.8
    Medium

    CVE-2007-1286

    Last Modified: 27 Sept 2016

    Integer overflow in PHP 4.4.4 and earlier allows remote context-dependent attackers to execute arbitrary code via a long string to the unserialize function, which triggers the overflow in the ZVAL reference counter.

    Source:Stefan Esser
    Published:2 Mar 2007
    7.5
    High

    CVE-2007-1285

    Last Modified: 2 Dec 2016

    The Zend Engine in PHP 4.x before 4.4.7, and 5.x before 5.2.2, allows remote attackers to cause a denial of service (stack exhaustion and PHP crash) via deeply nested arrays, which trigger deep recursion in the variable destruction routines.

    Source:Stefan Esser
    Published:1 Mar 2007
    4.3
    Medium

    CVE-2007-1280

    Last Modified: 4 Dec 2013

    Cross-site scripting (XSS) vulnerability in Adobe RoboHelp X5, 6, and Server 6 allows remote attackers to inject arbitrary web script or HTML via a URL after a # (hash) in the URL path, as demonstrated using en/frameset-7.html, and possibly other unspecified vectors involving templates and (1) whstart.js and (2) whcsh_home.htm in WebHelp, (3) wf_startpage.js and (4) wf_startqs.htm in FlashHelp, or (5) WindowManager.dll in RoboHelp Server 6.

    Source:Michael Domberg
    Published:9 May 2007
    7.5
    High

    CVE-2007-1277

    Last Modified: 4 May 2017

    WordPress 2.1.1, as downloaded from some official distribution sites during February and March 2007, contains an externally introduced backdoor that allows remote attackers to execute arbitrary commands via (1) an eval injection vulnerability in the ix parameter to wp-includes/feed.php, and (2) an untrusted passthru call in the iz parameter to wp-includes/theme.php.

    Source:Ivan Fratric
    Published:5 Mar 2007
    5
    Medium

    CVE-2007-1266

    Last Modified: 19 Nov 2013

    Evolution 2.8.1 and earlier does not properly use the --status-fd argument when invoking GnuPG, which prevents Evolution from visually distinguishing between signed and unsigned portions of OpenPGP messages with multiple components, which allows remote attackers to forge the contents of a message without detection.

    Source:Gerardo Richarte
    Published:6 Mar 2007
    5
    Medium

    CVE-2007-1264

    Last Modified: 19 Nov 2013

    Enigmail 0.94.2 and earlier does not properly use the --status-fd argument when invoking GnuPG, which prevents Enigmail from visually distinguishing between signed and unsigned portions of OpenPGP messages with multiple components, which allows remote attackers to forge the contents of a message without detection.

    Source:Gerardo Richarte
    Published:6 Mar 2007
    5
    Medium

    CVE-2007-1263

    Last Modified: 19 Nov 2013

    GnuPG 1.4.6 and earlier and GPGME before 1.1.4, when run from the command line, does not visually distinguish signed and unsigned portions of OpenPGP messages with multiple components, which might allow remote attackers to forge the contents of a message without detection.

    Source:Gerardo Richarte
    Published:5 Mar 2007
    7.5
    High

    CVE-2007-1260

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the connectHandle function in server.cpp in WebMod 0.48 allows remote attackers to execute arbitrary code via a long string in the Content-Length HTTP header.

    Source:cybermind
    Published:3 Mar 2007
    6
    Medium

    CVE-2007-1255

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in admin.bbcode.php in Connectix Boards 0.7 and earlier allows remote authenticated administrators to execute arbitrary PHP code by uploading a crafted GIF smiley image with a .php extension via the uploadimage parameter to admin.php, which can be later accessed via a direct request for the file in smileys/. NOTE: this can be leveraged with a separate SQL injection issue for remote unauthenticated attacks.

    Source:DarkFig
    Published:3 Mar 2007
    6.5
    Medium

    CVE-2007-1254

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in part.userprofile.php in Connectix Boards 0.7 and earlier allows remote authenticated users to execute arbitrary SQL commands and obtain privileges via the p_skin parameter to index.php.

    Source:DarkFig
    Published:3 Mar 2007
    9.3
    Critical

    CVE-2007-1251

    Last Modified: 27 Sept 2016

    Format string vulnerability in the new_warning function in ntserv/warning.c for Netrek Vanilla Server 2.12.0, when EVENTLOG is enabled, allows remote attackers to cause a denial of service (crash) or execute arbitrary code via format string specifiers in the message handling.

    Source:Luigi Auriemma
    Published:3 Mar 2007
    7.5
    High

    CVE-2007-1250

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in section/default.asp in ANGEL Learning Management Suite (LMS) 7.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:Craig Heffner
    Published:3 Mar 2007
    4.3
    Medium

    CVE-2007-1248

    Last Modified: 19 Nov 2013

    Multiple cross-site scripting (XSS) vulnerabilities in built2go News Manager Blog 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) cid, (2) uid, and (3) nid parameters to (a) news.php, and the nid parameter to (b) rating.php.

    Source:the_Edit0r
    Published:3 Mar 2007
    6.8
    Medium

    CVE-2007-1247

    Last Modified: 19 Nov 2013

    Multiple PHP remote file inclusion vulnerabilities in aWeb Labs aWebNews 1.5 allow remote attackers to execute arbitrary PHP code via a URL in the path_to_news parameter to (1) listing.php or (2) visview.php.

    Source:mostafa_ragab
    Published:3 Mar 2007
    6.8
    Medium

    CVE-2007-1244

    Last Modified: 4 May 2017

    Cross-site request forgery (CSRF) vulnerability in the AdminPanel in WordPress 2.1.1 and earlier allows remote attackers to perform privileged actions as administrators, as demonstrated using the delete action in wp-admin/post.php. NOTE: this issue can be leveraged to perform cross-site scripting (XSS) attacks and steal cookies via the post parameter.

    Source:Samenspender
    Published:3 Mar 2007
    7.5
    High

    CVE-2007-1243

    Last Modified: 18 Nov 2013

    Audins Audiens 3.3 allows remote attackers to bypass authentication and perform certain privileged actions, possibly an uninstall of the product, by calling unistall.php with the values cnf=disinstalla and status=on. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:r00t
    Published:3 Mar 2007
    7.5
    High

    CVE-2007-1242

    Last Modified: 18 Nov 2013

    SQL injection vulnerability in system/index.php in Audins Audiens 3.3 allows remote attackers to execute arbitrary SQL commands via the PHPSESSID cookie. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:r00t
    Published:3 Mar 2007
    5.8
    Medium

    CVE-2007-1241

    Last Modified: 18 Nov 2013

    Cross-site scripting (XSS) vulnerability in setup.php in Audins Audiens 3.3 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:r00t
    Published:3 Mar 2007
    4.3
    Medium

    CVE-2007-1240

    Last Modified: 18 Nov 2013

    Multiple cross-site scripting (XSS) vulnerabilities in Docebo CMS 3.0.3 through 3.0.5 allow remote attackers to inject arbitrary web script or HTML via (1) the searchkey parameter to index.php, or the (2) sn or (3) ri parameter to modules/htmlframechat/index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:r00t
    Published:3 Mar 2007
    7.5
    High

    CVE-2007-1233

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in downloadcounter.php in STWC-Counter 3.4.0.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the stwc_counter_verzeichniss parameter.

    Source:burncycle
    Published:3 Mar 2007
    5.1
    Medium

    CVE-2007-1232

    Last Modified: 18 Nov 2013

    Directory traversal vulnerability in SQLiteManager 1.2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in a SQLiteManager_currentTheme cookie.

    Source:Simon Bonnard
    Published:3 Mar 2007
    4.3
    Medium

    CVE-2007-1231

    Last Modified: 3 May 2014

    Multiple cross-site scripting (XSS) vulnerabilities in SQLiteManager 1.2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) database name, (2) table name, (3) ViewName, (4) view, (5) trigger, and (6) function fields in main.php and certain other files.

    Source:Hadi Kiamarsi
    Published:3 Mar 2007
    4.3
    Medium

    CVE-2007-1229

    Last Modified: 18 Nov 2013

    Cross-site scripting (XSS) vulnerability in the Nullsoft ShoutcastServer 1.9.7 allows remote attackers to inject arbitrary web script or HTML via the top-level URI on the Incoming interface (port 8001/tcp), which is not properly handled in the administrator interface when viewing the log file.

    Source:SaMuschie
    Published:2 Mar 2007
    6.6
    Medium

    CVE-2007-1227

    Last Modified: 23 Apr 2026

    VShieldCheck in McAfee VirusScan for Mac (Virex) before 7.7 patch 1 allow local users to change permissions of arbitrary files via a symlink attack on /Library/Application Support/Virex/VShieldExclude.txt, as demonstrated by symlinking to the root crontab file to execute arbitrary commands.

    Source:Kevin Finisterre
    Published:2 Mar 2007
    10
    Critical

    CVE-2007-1225

    Last Modified: 28 Apr 2011

    The connection log file implementation in Grok Developments NetProxy 4.03 does not record requests that omit http:// in a URL, which might allow remote attackers to conduct unauthorized activities and avoid detection.

    Source:Craig Heffner
    Published:2 Mar 2007
    5
    Medium

    CVE-2007-1224

    Last Modified: 28 Apr 2011

    Grok Developments NetProxy 4.03 allows remote attackers to bypass URL filtering via a request that omits "http://" from the URL and specifies the destination port (:80).

    Source:Craig Heffner
    Published:2 Mar 2007
    7.5
    High

    CVE-2007-1219

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in actions/del.php in Admin Phorum 3.3.1a allows remote attackers to execute arbitrary PHP code via a URL in the include_path parameter.

    Source:GoLd_M
    Published:2 Mar 2007
    7.2
    High

    CVE-2007-1215

    Last Modified: 27 Oct 2016

    Buffer overflow in the Graphics Device Interface (GDI) in Microsoft Windows 2000 SP4; XP SP2; Server 2003 Gold, SP1, and SP2; and Vista allows local users to gain privileges via certain "color-related parameters" in crafted images.

    Source:Ivanlef0u
    Published:4 Apr 2007
    7.2
    High

    CVE-2007-1213

    Last Modified: 27 Oct 2016

    The TrueType Fonts rasterizer in Microsoft Windows 2000 SP4 allows local users to gain privileges via crafted TrueType fonts, which result in an uninitialized function pointer.

    Source:Ivanlef0u
    Published:4 Apr 2007
    6.6
    Medium

    CVE-2007-1212

    Last Modified: 27 Oct 2016

    Buffer overflow in the Graphics Device Interface (GDI) in Microsoft Windows 2000 SP4; XP SP2; Server 2003 Gold, SP1, and SP2; and Vista allows local users to gain privileges via a crafted Enhanced Metafile (EMF) image format file.

    Source:Ivanlef0u
    Published:4 Apr 2007
    7.1
    High

    CVE-2007-1211

    Last Modified: 27 Oct 2016

    Unspecified kernel GDI functions in Microsoft Windows 2000 SP4; XP SP2; and Server 2003 Gold, SP1, and SP2 allows user-assisted remote attackers to cause a denial of service (possibly persistent restart) via a crafted Windows Metafile (WMF) image that causes an invalid dereference of an offset in a kernel structure, a related issue to CVE-2005-4560.

    Source:Ivanlef0u
    Published:4 Apr 2007
    4.3
    Medium

    CVE-2007-1199

    Last Modified: 20 Nov 2013

    Adobe Reader and Acrobat Trial allow remote attackers to read arbitrary files via a file:// URI in a PDF document, as demonstrated with <</URI(file:///C:/)/S/URI>>, a different issue than CVE-2007-0045.

    Source:pdp
    Published:28 Feb 2007
    7.5
    High

    CVE-2007-1195

    Last Modified: 27 Apr 2011

    Multiple buffer overflows in XM Easy Personal FTP Server 5.3.0 allow remote attackers to execute arbitrary code via unspecified vectors. NOTE: this issue might overlap CVE-2006-2225, CVE-2006-2226, or CVE-2006-5728.

    Source:Umesh Wanve
    Published:2 Mar 2007
    5
    Medium

    CVE-2007-1192

    Last Modified: 19 Nov 2013

    Thomas R. Pasawicz HyperBook Guestbook 1.30 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download an admin password hash via a direct request for data/gbconfiguration.dat.

    Source:PeTrO
    Published:2 Mar 2007
    6.8
    Medium

    CVE-2007-1190

    Last Modified: 20 Nov 2013

    Unspecified vulnerability in the EmbeddedWB Web Browser ActiveX control allows remote attackers to execute arbitrary code via unspecified vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:shinnai
    Published:2 Mar 2007
    7.2
    High

    CVE-2007-1189

    Last Modified: 22 Nov 2017

    Integer overflow in the envwrite function in the Alcatel-Lucent Bell Labs Plan 9 kernel allows local users to overwrite certain memory addresses with kernel memory via a large n argument, as demonstrated by (1) modifying the iseve function to gain privileges and (2) making the devpermcheck function grant unrestricted device permissions.

    Source:Don Bailey
    Published:2 Mar 2007
    6.4
    Medium

    CVE-2007-1172

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in nukesentinel.php in NukeSentinel 2.5.05, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the Client-IP HTTP header, aka the "File Disclosure Exploit."

    Source:DarkFig
    Published:28 Feb 2007
    7.5
    High

    CVE-2007-1171

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in includes/nsbypass.php in NukeSentinel 2.5.05, 2.5.11, and other versions before 2.5.12 allows remote attackers to execute arbitrary SQL commands via an admin cookie.

    Source:DarkFig
    Published:28 Feb 2007
    5
    Medium

    CVE-2007-1167

    Last Modified: 23 Apr 2026

    inc/filebrowser/browser.php in deV!L`z Clanportal (DZCP) 1.4.5 and earlier allows remote attackers to obtain MySQL data via the inc/mysql.php value of the file parameter.

    Source:Kiba
    Published:28 Feb 2007
    7.5
    High

    CVE-2007-1166

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in result.php in Nabopoll 1.2 allows remote attackers to execute arbitrary SQL commands via the surv parameter.

    Source:s0cratex
    Published:28 Feb 2007
    7.5
    High

    CVE-2007-1165

    Last Modified: 27 Sept 2016

    Multiple PHP remote file inclusion vulnerabilities in DBGuestbook 1.1 allow remote attackers to execute arbitrary PHP code via a URL in the dbs_base_path parameter to (1) utils.php, (2) guestbook.php, or (3) views.php in includes/.

    Source:Denven
    Published:28 Feb 2007
    7.5
    High

    CVE-2007-1164

    Last Modified: 27 Sept 2016

    Multiple PHP remote file inclusion vulnerabilities in DBImageGallery 1.2.2 allow remote attackers to execute arbitrary PHP code via a URL in the donsimg_base_path parameter to (1) attributes.php, (2) images.php, or (3) scan.php in admin/; or (4) attributes.php, (5) db_utils.php, (6) images.php, (7) utils.php, or (8) values.php in includes/.

    Source:Denven
    Published:28 Feb 2007
    7.5
    High

    CVE-2007-1163

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in printview.php in webSPELL 4.01.02 and earlier allows remote attackers to execute arbitrary SQL commands via the topic parameter, a different vector than CVE-2007-1019, CVE-2006-5388, and CVE-2006-4783.

    Source:DNX
    Published:28 Feb 2007
    7.8
    High

    CVE-2007-1162

    Last Modified: 23 Apr 2026

    A certain ActiveX control in the Common Controls Replacement Project (CCRP) CCRP BrowseDialog Server (ccrpbds6.dll) allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long (1) IsFolderAvailable or (2) RootFolder property value, different vectors than CVE-2007-0371.

    Source:shinnai
    Published:28 Feb 2007
    4.3
    Medium

    CVE-2007-1159

    Last Modified: 14 Feb 2017

    Cross-site scripting (XSS) vulnerability in modules/out.php in Pyrophobia 2.1.3.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:laurent gaffie
    Published:28 Feb 2007