9.3
    Critical

    CVE-2007-1037

    Last Modified: 16 Nov 2013

    Stack-based buffer overflow in News File Grabber 4.1.0.1 and earlier allows remote attackers to execute arbitrary code via a .nzb file with a long subject field. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Parveen Vashishtha
    Published:21 Feb 2007
    7.5
    High

    CVE-2007-1036

    Last Modified: 5 Sept 2012

    The default configuration of JBoss does not restrict access to the (1) console and (2) web management interfaces, which allows remote attackers to bypass authentication and gain administrative access via direct requests.

    Source:Metasploit
    Published:21 Feb 2007
    7.5
    High

    CVE-2007-1034

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the category file in modules.php in the Emporium 2.3.0 and earlier module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the category_id parameter.

    Source:Hussin X
    Published:21 Feb 2007
    6.8
    Medium

    CVE-2007-1031

    Last Modified: 19 Jul 2017

    Directory traversal vulnerability in include/db_conn.php in SpoonLabs Vivvo Article Management CMS 3.4 allows remote attackers to include and execute arbitrary local files via the root parameter.

    Source:Snip0r
    Published:21 Feb 2007
    7.6
    High

    CVE-2007-1029

    Last Modified: 15 Nov 2013

    Stack-based buffer overflow in the Connect method in the IMAP4 component in Quiksoft EasyMail Objects before 6.5 allows remote attackers to execute arbitrary code via a long host name.

    Source:Paul Craig
    Published:21 Feb 2007
    7.5
    High

    CVE-2007-1026

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in view.php in XLAtunes 0.1 and earlier allows remote attackers to execute arbitrary SQL commands via the album parameter in view mode. NOTE: some of these details are obtained from third party information.

    Source:Bl0od3r
    Published:21 Feb 2007
    7.5
    High

    CVE-2007-1025

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in inc/functions_inc.php in VS-Link-Partner 2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the gb_pfad, or possibly script_pfad, parameter.

    Source:ajann
    Published:21 Feb 2007
    10
    Critical

    CVE-2007-1024

    Last Modified: 15 Nov 2013

    PHP remote file inclusion vulnerability in include.php in Meganoide's news 1.1.1 allows remote attackers to execute arbitrary PHP code via a URL in the _SERVER[DOCUMENT_ROOT] parameter.

    Source:KaRTaL
    Published:21 Feb 2007
    7.5
    High

    CVE-2007-1023

    Last Modified: 27 Sept 2016

    SQL injection vulnerability in pop_profile.asp in Snitz Forums 2000 3.1 SR4 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:Mehmet Ince
    Published:21 Feb 2007
    7.5
    High

    CVE-2007-1022

    Last Modified: 15 Nov 2013

    SQL injection vulnerability in h_goster.asp in Turuncu Portal 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:chernobiLe
    Published:21 Feb 2007
    10
    Critical

    CVE-2007-1021

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in inc_listnews.asp in CodeAvalanche News 1.x allows remote attackers to execute arbitrary SQL commands via the CAT_ID parameter.

    Source:beks
    Published:21 Feb 2007
    6.8
    Medium

    CVE-2007-1020

    Last Modified: 16 Nov 2013

    Cross-site scripting (XSS) vulnerability in index.php in CedStat 1.31 allows remote attackers to inject arbitrary web script or HTML via the hier parameter.

    Source:sn0oPy
    Published:21 Feb 2007
    6.8
    Medium

    CVE-2007-1019

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in news.php in webSPELL 4.01.02, when register_globals is enabled, allows remote attackers to execute arbitrary SQL commands via the showonly parameter to index.php, a different vector than CVE-2006-5388.

    Source:DNX
    Published:21 Feb 2007
    9.3
    Critical

    CVE-2007-1017

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in show_news_inc.php in VirtualSystem VS-News-System 1.2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the newsordner parameter.

    Source:ajann
    Published:21 Feb 2007
    7.5
    High

    CVE-2007-1016

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in Aktueldownload Haber script allows remote attackers to execute arbitrary SQL commands via certain vectors related to the HaberDetay.asp and rss.asp components, and the id and kid parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: the combination of the HaberDetay.asp component and the id parameter is already covered by another February 2007 CVE candidate.

    Source:Mehmet Ince
    Published:21 Feb 2007
    10
    Critical

    CVE-2007-1015

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in HaberDetay.asp in Aktueldownload Haber script allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:Mehmet Ince
    Published:21 Feb 2007
    10
    Critical

    CVE-2007-1014

    Last Modified: 29 Dec 2016

    Stack-based buffer overflow in VicFTPS before 5.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long CWD command.

    Source:r0ut3r
    Published:21 Feb 2007
    10
    Critical

    CVE-2007-1013

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in generate.php in VirtualSystem Htaccess Passwort Generator 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the ht_pfad parameter.

    Source:kezzap66345
    Published:21 Feb 2007
    7.5
    High

    CVE-2007-1011

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in functions_inc.php in VS-Gastebuch 1.5.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the gb_pfad parameter.

    Source:ajann
    Published:21 Feb 2007
    6.8
    Medium

    CVE-2007-1010

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in ZebraFeeds 1.0, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the zf_path parameter to (1) aggregator.php and (2) controller.php in newsfeeds/includes/.

    Source:ThE dE@Th
    Published:21 Feb 2007
    2.6
    Low

    CVE-2007-1008

    Last Modified: 16 Nov 2013

    Apple iTunes 7.0.2 allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted XML list of radio stations, which results in memory corruption. NOTE: iTunes retrieves the XML document from a static URL, which requires an attacker to perform DNS spoofing or man-in-the-middle attacks for exploitation.

    Source:poplix
    Published:20 Feb 2007
    6.8
    Medium

    CVE-2007-1001

    Last Modified: 26 Nov 2013

    Multiple integer overflows in the (1) createwbmp and (2) readwbmp functions in wbmp.c in the GD library (libgd) in PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 allow context-dependent attackers to execute arbitrary code via Wireless Bitmap (WBMP) images with large width or height values.

    Source:Ivan Fratric
    Published:10 Mar 2007
    7.2
    High

    CVE-2007-1000

    Last Modified: 5 Oct 2016

    The ipv6_getsockopt_sticky function in net/ipv6/ipv6_sockglue.c in the Linux kernel before 2.6.20.2 allows local users to read arbitrary kernel memory via certain getsockopt calls that trigger a NULL dereference.

    Source:dreyer
    Published:6 Mar 2007
    7.5
    High

    CVE-2007-0987

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in Jupiter CMS 1.1.5 allows remote attackers to include and execute arbitrary local files via a .. (dot dot), or an absolute pathname, in the n parameter.

    Source:DarkFig
    Published:16 Feb 2007
    5.1
    Medium

    CVE-2007-0986

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in index.php in Jupiter CMS 1.1.5, when PHP 5.0.0 or later is used, allows remote attackers to execute arbitrary PHP code via an ftp URL in the n parameter.

    Source:DarkFig
    Published:16 Feb 2007
    7.5
    High

    CVE-2007-0985

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in nickpage.php in phpCC 4.2 beta and earlier allows remote attackers to execute arbitrary SQL commands via the npid parameter in a sign_gb action.

    Source:ajann
    Published:16 Feb 2007
    7.5
    High

    CVE-2007-0984

    Last Modified: 27 Sept 2016

    SQL injection vulnerability in admin_poll.asp in PollMentor 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to pollmentorres.asp.

    Source:SaO
    Published:16 Feb 2007
    6.8
    Medium

    CVE-2007-0983

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in _admin/nav.php in AT Contenator 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the Root_To_Script parameter.

    Source:ajann
    Published:16 Feb 2007
    4.3
    Medium

    CVE-2007-0982

    Last Modified: 15 Nov 2013

    Cross-site scripting (XSS) vulnerability in error.php in TaskFreak! 0.5.5 allows remote attackers to inject arbitrary web script or HTML via the tznMessage parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Spiked
    Published:16 Feb 2007
    7.5
    High

    CVE-2007-0981

    Last Modified: 23 Apr 2026

    Mozilla based browsers, including Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8, allow remote attackers to bypass the same origin policy, steal cookies, and conduct other attacks by writing a URI with a null byte to the hostname (location.hostname) DOM property, due to interactions with DNS resolver code.

    Source:Michal Zalewski
    Published:16 Feb 2007
    7.1
    High

    CVE-2007-0977

    Last Modified: 23 Apr 2026

    IBM Lotus Domino R5 and R6 WebMail, with "Generate HTML for all fields" enabled, stores HTTPPassword hashes from names.nsf in a manner accessible through Readviewentries and OpenDocument requests to the defaultview view, a different vector than CVE-2005-2428.

    Source:Marco Ivaldi
    Published:16 Feb 2007
    10
    Critical

    CVE-2007-0976

    Last Modified: 23 Apr 2026

    Buffer overflow in the ActSoft DVD-Tools ActiveX control (dvdtools.ocx) allows remote attackers to execute arbitrary code via a long DVD_TOOLS.OpenDVD property value.

    Source:shinnai
    Published:16 Feb 2007
    7.5
    High

    CVE-2007-0972

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in modules/emoticons.php in Jupiter CMS 1.1.5 allows remote attackers to upload arbitrary files by modifying the HTTP request to send an image content type, and to omit is_guest and is_user parameters. NOTE: this issue might be related to CVE-2006-4875.

    Source:DarkFig
    Published:16 Feb 2007
    7.5
    High

    CVE-2007-0971

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Jupiter CMS 1.1.5 allow remote attackers to execute arbitrary SQL commands via the Client-IP HTTP header and certain other HTTP headers, which set the ip variable that is used in SQL queries performed by index.php and certain other PHP scripts. NOTE: the attack vector might involve _SERVER.

    Source:DarkFig
    Published:16 Feb 2007
    7.5
    High

    CVE-2007-0970

    Last Modified: 4 Jan 2017

    Multiple SQL injection vulnerabilities in WebTester 5.0.20060927 and earlier allow remote attackers to execute arbitrary SQL commands via the testID parameter to directions.php, and unspecified parameters to other files that accept GET or POST input.

    Source:Moran Zavdi
    Published:16 Feb 2007
    7.8
    High

    CVE-2007-0955

    Last Modified: 15 Nov 2016

    The NTLM_UnPack_Type3 function in MENTLM.dll in MailEnable Professional 2.35 and earlier allows remote attackers to cause a denial of service (application crash) via certain base64-encoded data following an AUTHENTICATE NTLM command to the imap port (143/tcp), which results in an out-of-bounds read.

    Source:mu-b
    Published:15 Feb 2007
    7.5
    High

    CVE-2007-0951

    Last Modified: 15 Nov 2013

    SQL injection vulnerability in listmain.asp in Fullaspsite ASP Hosting Site allows remote attackers to execute arbitrary SQL commands via the cat parameter.

    Source:ShaFuck31
    Published:15 Feb 2007
    6.8
    Medium

    CVE-2007-0950

    Last Modified: 15 Nov 2013

    Cross-site scripting (XSS) vulnerability in listmain.asp in Fullaspsite ASP Hosting Site allows remote attackers to inject arbitrary web script or HTML via the cat parameter.

    Source:ShaFuck31
    Published:15 Feb 2007
    10
    Critical

    CVE-2007-0949

    Last Modified: 14 Nov 2016

    Stack-based buffer overflow in iTinySoft Studio Total Video Player 1.03, and possibly earlier, allows remote attackers to execute arbitrary code via a M3U playlist file that contains a long file name. NOTE: it was later reported that 1.20 and 1.30 are also affected.

    Source:fl0 fl0w
    Published:15 Feb 2007
    7.5
    High

    CVE-2007-0927

    Last Modified: 9 Mar 2018

    Heap-based buffer overflow in uTorrent 1.6 allows remote attackers to execute arbitrary code via a torrent file with a crafted announce header.

    Source:defsec
    Published:14 Feb 2007
    4.3
    Medium

    CVE-2007-0925

    Last Modified: 15 Nov 2013

    Cross-site scripting (XSS) vulnerability in search/SearchResults.aspx in Community Server allows remote attackers to inject arbitrary web script or HTML via the q parameter.

    Source:BL4CK
    Published:14 Feb 2007
    7.5
    High

    CVE-2007-0920

    Last Modified: 27 Sept 2016

    SQL injection vulnerability in philboard_forum.asp in Philboard 1.14 and earlier allows remote attackers to execute arbitrary SQL commands via the forumid parameter.

    Source:Mehmet Ince
    Published:14 Feb 2007
    7.8
    High

    CVE-2007-0919

    Last Modified: 26 Sept 2016

    Directory traversal vulnerability in Nickolas Grigoriadis Mini Web server (MiniWebsvr) 0.0.6 allows remote attackers to list the directory immediately above the web root via a ..%00 sequence in the URI.

    Source:shinnai
    Published:14 Feb 2007
    7.8
    High

    CVE-2007-0911

    Last Modified: 14 Nov 2013

    Off-by-one error in the str_ireplace function in PHP 5.2.1 might allow context-dependent attackers to cause a denial of service (crash).

    Source:Thomas Hruska
    Published:13 Feb 2007
    5
    Medium

    CVE-2007-0908

    Last Modified: 27 Sept 2016

    The WDDX deserializer in the wddx extension in PHP 5 before 5.2.1 and PHP 4 before 4.4.5 does not properly initialize the key_length variable for a numerical key, which allows context-dependent attackers to read stack memory via a wddxPacket element that contains a variable with a string name before a numerical variable.

    Source:Stefan Esser
    Published:13 Feb 2007
    7.5
    High

    CVE-2007-0904

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in projects.php in LightRO CMS 1.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter to index.php.

    Source:ajann
    Published:13 Feb 2007
    7.5
    High

    CVE-2007-0900

    Last Modified: 14 Nov 2013

    Multiple PHP remote file inclusion vulnerabilities in TagIt! Tagboard 2.1.B Build 2 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the (1) configpath parameter to (a) tagviewer.php, (b) tag_process.php, and (c) CONFIG/errmsg.inc.php; and (d) addTagmin.php, (e) ban_watch.php, (f) delTagmin.php, (g) delTag.php, (h) editTagmin.php, (i) editTag.php, (j) manageTagmins.php, and (k) verify.php in tagmin/; the (2) adminpath parameter to (l) tagviewer.php, (m) tag_process.php, and (n) tagmin/index.php; and the (3) admin parameter to (o) readconf.php, (p) updateconf.php, (q) updatefilter.php, and (r) wordfilter.php in tagmin/; different vectors than CVE-2006-5249.

    Source:K-159
    Published:13 Feb 2007
    4.3
    Medium

    CVE-2007-0896

    Last Modified: 14 Nov 2013

    Cross-site scripting (XSS) vulnerability in the (1) Sage before 1.3.10, and (2) Sage++ extensions for Firefox, allows remote attackers to inject arbitrary web script or HTML via a "<SCRIPT/=''SRC='" sequence in an RSS feed, a different vulnerability than CVE-2006-4712.

    Source:Fukumori
    Published:13 Feb 2007
    4.3
    Medium

    CVE-2007-0890

    Last Modified: 30 Dec 2016

    Cross-site scripting (XSS) vulnerability in scripts/passwdmysql in cPanel WebHost Manager (WHM) 11.0.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the password parameter.

    Source:s3rv3r_hack3r
    Published:12 Feb 2007
    10
    Critical

    CVE-2007-0888

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the TFTP server in Kiwi CatTools before 3.2.0 beta allows remote attackers to read arbitrary files, and upload files to arbitrary locations, via ..// (dot dot) sequences in the pathname argument to an FTP (1) GET or (2) PUT command.

    Source:Sergey Gordeychik
    Published:12 Feb 2007