7.5
    High

    CVE-2007-0485

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in defines.php in WebChat 0.77 allows remote attackers to execute arbitrary PHP code via a URL in the WEBCHATPATH parameter.

    Source:v1per-haCker
    Published:25 Jan 2007
    6.2
    Medium

    CVE-2007-0467

    Last Modified: 26 Sept 2016

    crashdump in Apple Mac OS X 10.4.8 allows local users in the admin group to modify arbitrary files or gain privileges via a symlink attack on application logs in /Library/Logs/CrashReporter/.

    Source:MoAB
    Published:31 Jan 2007
    10
    Critical

    CVE-2007-0466

    Last Modified: 12 Nov 2013

    Telestream Flip4Mac Windows Media Components for Quicktime 2.1.0.33 allows remote attackers to execute arbitrary code via a crafted ASF_File_Properties_Object size field in a WMV file, which triggers memory corruption.

    Source:kf
    Published:31 Jan 2007
    7.6
    High

    CVE-2007-0465

    Last Modified: 11 Nov 2013

    Format string vulnerability in Apple Installer 2.1.5 on Mac OS X 10.4.8 allows user-assisted remote attackers to execute arbitrary code via format string specifiers in a (1) PKG, (2) DISTZ, or (3) MPKG package filename.

    Source:LMH
    Published:31 Jan 2007
    5
    Medium

    CVE-2007-0464

    Last Modified: 23 Apr 2026

    The _CFNetConnectionWillEnqueueRequests function in CFNetwork 129.19 on Apple Mac OS X 10.4 through 10.4.10 allows remote attackers to cause a denial of service (application crash) via a crafted HTTP 301 response, which results in a NULL pointer dereference.

    Source:MoAB
    Published:30 Jan 2007
    5
    Medium

    CVE-2007-0463

    Last Modified: 10 Nov 2013

    Format string vulnerability in Apple Software Update 2.0.5 on Mac OS X 10.4.8 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via format string specifiers in (1) SWUTMP or (2) SUCATALOG filenames, or using the (3) application/x-apple.sucatalog+xml MIME type.

    Source:kf
    Published:29 Jan 2007
    10
    Critical

    CVE-2007-0462

    Last Modified: 12 Nov 2013

    The _GetSrcBits32ARGB function in Apple QuickDraw, as used by Quicktime 7.1.3 and other applications on Mac OS X 10.4.8 and earlier, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted PICT image with a malformed Alpha RGB (ARGB) record, which triggers memory corruption.

    Source:LMH
    Published:26 Jan 2007
    5
    Medium

    CVE-2007-0450

    Last Modified: 21 Nov 2013

    Directory traversal vulnerability in Apache HTTP Server and Tomcat 5.x before 5.5.22 and 6.x before 6.0.10, when using certain proxy modules (mod_proxy, mod_rewrite, mod_jk), allows remote attackers to read arbitrary files via a .. (dot dot) sequence with combinations of (1) "/" (slash), (2) "\" (backslash), and (3) URL-encoded backslash (%5C) characters in the URL, which are valid separators in Tomcat but not in Apache.

    Source:D. Matscheko
    Published:14 Mar 2007
    10
    Critical

    CVE-2007-0449

    Last Modified: 26 Sept 2016

    Multiple buffer overflows in LGSERVER.EXE in CA BrightStor ARCserve Backup for Laptops and Desktops r11.0 through r11.1 SP1, Mobile Backup r4.0, Desktop and Business Protection Suite r2, and Desktop Management Suite (DMS) r11.0 and r11.1 allow remote attackers to execute arbitrary code via crafted packets to TCP port (1) 1900 or (2) 2200.

    Source:Winny Thomas
    Published:23 Jan 2007
    10
    Critical

    CVE-2007-0448

    Last Modified: 11 Nov 2013

    The fopen function in PHP 5.2.0 does not properly handle invalid URI handlers, which allows context-dependent attackers to bypass safe_mode restrictions and read arbitrary files via a file path specified with an invalid URI, as demonstrated via the srpath URI.

    Source:Maksymilian Arciemowicz
    Published:24 May 2007
    7.2
    High

    CVE-2007-0444

    Last Modified: 26 Sept 2016

    Stack-based buffer overflow in the print provider library (cpprov.dll) in Citrix Presentation Server 4.0, MetaFrame Presentation Server 3.0, and MetaFrame XP 1.0 allows local users and remote attackers to execute arbitrary code via long arguments to the (1) EnumPrintersW and (2) OpenPrinter functions.

    Source:Andres Tarasco
    Published:24 Jan 2007
    4.9
    Medium

    CVE-2007-0430

    Last Modified: 20 Sept 2016

    The shared_region_map_file_np function in Apple Mac OS X 10.4.8 and earlier kernel allows local users to cause a denial of service (memory corruption) via a large mappingCount value.

    Source:Adriano Lima
    Published:23 Jan 2007
    5
    Medium

    CVE-2007-0429

    Last Modified: 26 Sept 2016

    DivXBrowserPlugin (aka DivX Web Player) npdivx32.dll, as distributed with DivX Player 6.4.1, allows remote attackers to cause a denial of service (Internet Explorer 7 crash) by invoking the GoWindowed method for a certain instance of the ActiveX object.

    Source:shinnai
    Published:23 Jan 2007
    9.3
    Critical

    CVE-2007-0427

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Microsoft Help Workshop 4.03.0002 allows user-assisted remote attackers to execute arbitrary code via a help project (.HPJ) file with a long HLP field in the OPTIONS section.

    Source:porkythepig
    Published:23 Jan 2007
    6
    Medium

    CVE-2007-0399

    Last Modified: 8 Nov 2013

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in Simple Machines Forum (SMF) 1.1 RC3 allow remote authenticated users to inject arbitrary web script or HTML via the (1) recipient or (2) BCC field when selecting send in a pm action.

    Source:Aria-Security Team
    Published:22 Jan 2007
    7.5
    High

    CVE-2007-0395

    Last Modified: 21 Sept 2016

    PHP remote file inclusion vulnerability in libraries/grab_globals.lib.php in ComVironment 4.0 allows remote attackers to execute arbitrary PHP code via a URL in the inc_dir parameter.

    Source:GoLd_M
    Published:19 Jan 2007
    7.8
    High

    CVE-2007-0389

    Last Modified: 8 Nov 2013

    Directory traversal vulnerability in ArsDigita Community System (ACS) 3.4.10 and earlier, and ArsDigita Community Education Solution (ACES) 1.1, allows remote attackers to read arbitrary files via .%252e/ (double-encoded dot dot slash) sequences in the URI.

    Source:Elliot Kendall
    Published:19 Jan 2007
    7.5
    High

    CVE-2007-0388

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in search.php in Woltlab Burning Board (wBB) 1.0.2 and earlier, and 2.3.6 and earlier in the 2.x series, allows remote attackers to execute arbitrary SQL commands via the boardids[1] and other boardids[] parameters.

    Source:silent vapor
    Published:19 Jan 2007
    4.3
    Medium

    CVE-2007-0371

    Last Modified: 23 Apr 2026

    A certain ActiveX control in the Common Controls Replacement Project (CCRP) CCRP BrowseDialog Server (ccrpbds6.dll) allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long CCRP_BDc.SelectedFolder property value.

    Source:shinnai
    Published:19 Jan 2007
    7.5
    High

    CVE-2007-0370

    Last Modified: 16 Nov 2016

    Unrestricted file upload vulnerability in index.php in phpBP RC3 (2.204) and earlier allows remote administrators to inject arbitrary PHP code into an upload/banners/ file via a banners add operation that uploads the PHP code through an image_form parameter specifying a multiple-extension filename such as .jpg.vil.gif.php, which is stored in upload/banners/ under a different name, and executable via a direct request. NOTE: a separate SQL injection issue could be leveraged to make this vulnerability reachable by remote unauthenticated attackers.

    Source:Kacper
    Published:19 Jan 2007
    7.5
    High

    CVE-2007-0369

    Last Modified: 16 Nov 2016

    SQL injection vulnerability in phpBP RC3 (2.204) and earlier allows remote attackers to execute arbitrary SQL commands via the comment forum.

    Source:Kacper
    Published:19 Jan 2007
    10
    Critical

    CVE-2007-0368

    Last Modified: 15 Sept 2011

    Stack-based buffer overflow in mbse-bbs 0.70 and earlier allows local users to execute arbitrary code via a long string in the MBSE_ROOT environment variable.

    Source:prdelka
    Published:19 Jan 2007
    4.3
    Medium

    CVE-2007-0364

    Last Modified: 7 Nov 2013

    Multiple cross-site scripting (XSS) vulnerabilities in nicecoder.com INDEXU 5.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) error_msg parameter to (a) suggest_category.php; the (2) u parameter to (b) user_detail.php; the (3) friend_name, (4) friend_email, (5) error_msg, (6) my_name, (7) my_email, and (8) id parameters to (c) tell_friend.php; the (9) error_msg, (10) email, (11) name, and (12) subject parameters to (d) sendmail.php; the (13) email, (14) error_msg, and (15) username parameters to (e) send_pwd.php; the (16) keyword parameter to (f) search.php; the (17) error_msg, (18) username, (19) password, (20) password2, and (21) email parameters to (g) register.php; the (22) url, (23) contact_name, and (24) email parameters to (h) power_search.php; the (25) path and (26) total parameters to (i) new.php; the (27) query parameter to (j) modify.php; the (28) error_msg parameter to (k) login.php; the (29) error_msg and (30) email parameters to (l) mailing_list.php; the (31) gateway parameter to (m) upgrade.php; and another unspecified vector.

    Source:SwEET-DeViL
    Published:19 Jan 2007
    7.5
    High

    CVE-2007-0361

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in mep/frame.php in PHPMyphorum 1.5a allows remote attackers to execute arbitrary PHP code via a URL in the chem parameter.

    Source:v1per-haCker
    Published:19 Jan 2007
    7.5
    High

    CVE-2007-0360

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in lang/index.php in Oreon 1.2.3 RC4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the file parameter.

    Source:3l3ctric-Cracker
    Published:19 Jan 2007
    7.5
    High

    CVE-2007-0359

    Last Modified: 1 Dec 2016

    PHP remote file inclusion vulnerability in frontpage.php in Uberghey CMS 0.3.1 allows remote attackers to execute arbitrary PHP code via a URL in the setup_folder parameter.

    Source:GoLd_M
    Published:19 Jan 2007
    5
    Medium

    CVE-2007-0357

    Last Modified: 7 Nov 2013

    Directory traversal vulnerability in the AVM IGD CTRL Service in Fritz!DSL 02.02.29 allows remote attackers to read arbitrary files via ..%5C (URL-encoded dot dot backslash) sequences in a URI requested from the AR7 webserver.

    Source:DPR
    Published:19 Jan 2007
    5
    Medium

    CVE-2007-0356

    Last Modified: 23 Apr 2026

    The Common Controls Replacement Project (CCRP) FolderTreeview (FTV) ActiveX control (ccrpftv6.ocx) allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long CCRP.RootFolder property value.

    Source:shinnai
    Published:19 Jan 2007
    7.2
    High

    CVE-2007-0355

    Last Modified: 23 Apr 2026

    Buffer overflow in the Apple Minimal SLP v2 Service Agent (slpd) in Mac OS X 10.4.11 and earlier, including 10.4.8, allows local users, and possibly remote attackers, to gain privileges and possibly execute arbitrary code via a registration request with an invalid attr-list field.

    Source:MoAB
    Published:19 Jan 2007
    7.5
    High

    CVE-2007-0354

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in email.php in MGB OpenSource Guestbook 0.5.4.5 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:SlimTim10
    Published:19 Jan 2007
    6.8
    Medium

    CVE-2007-0353

    Last Modified: 12 Dec 2016

    Cross-site scripting (XSS) vulnerability in (1) index.php and (2) login.php in myBloggie 2.1.5 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO string.

    Source:CorryL
    Published:19 Jan 2007
    9.3
    Critical

    CVE-2007-0352

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in Microsoft Help Workshop 4.03.0002 allows user-assisted remote attackers to execute arbitrary code via a crafted .cnt file composed of lines that begin with an integer followed by a space and a long string.

    Source:porkythepig
    Published:19 Jan 2007
    9.3
    Critical

    CVE-2007-0348

    Last Modified: 10 Mar 2011

    Stack-based buffer overflow in the IASystemInfo.dll ActiveX control in (1) InterActual Player 2.60.12.0717, (2) Roxio CinePlayer 3.2, (3) WinDVD 7.0.27.172, and possibly other products, allows remote attackers to execute arbitrary code via a long ApplicationType property.

    Source:Metasploit
    Published:21 Mar 2007
    4.3
    Medium

    CVE-2007-0347

    Last Modified: 27 Sept 2016

    The is_eow function in format.c in CVSTrac before 2.0.1 does not properly check for the "'" (quote) character, which allows remote authenticated users to execute limited SQL injection attacks and cause a denial of service (database error) via a ' character in certain messages, tickets, or Wiki entries.

    Source:Ralf S. Engelschall
    Published:29 Jan 2007
    7.5
    High

    CVE-2007-0344

    Last Modified: 23 Apr 2026

    Multiple format string vulnerabilities in (1) _invitedToRoom: and (2) _invitedToDirectChat: in Colloquy 2.1 and earlier allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via format string specifiers in the channel name of an INVITE request, related to the implementation of AlertSheet and AlertPanel in Apple AppKit.

    Source:MoAB
    Published:18 Jan 2007
    7.5
    High

    CVE-2007-0342

    Last Modified: 6 Nov 2013

    WebCore in Apple WebKit build 18794 allows remote attackers to cause a denial of service (null dereference and application crash) via a TD element with a large number in the ROWSPAN attribute, as demonstrated by a crash of OmniWeb 5.5.3 on Mac OS X 10.4.8, a different vulnerability than CVE-2006-2019.

    Source:Tom Ferris
    Published:18 Jan 2007
    7.5
    High

    CVE-2007-0340

    Last Modified: 21 Sept 2016

    SQL injection vulnerability in inc/header.inc.php in ThWboard 3.0b2.84-php5 and earlier allows remote attackers to execute arbitrary SQL commands via the board[styleid] parameter to index.php.

    Source:rgod
    Published:18 Jan 2007
    7.5
    High

    CVE-2007-0338

    Last Modified: 7 Nov 2016

    Heap-based buffer overflow in Dream FTP Server allows remote attackers to execute arbitrary code via a USER command with a large number of format string specifiers, which triggers the overflow during processing of the Server Log.

    Source:Marsu
    Published:18 Jan 2007
    7.5
    High

    CVE-2007-0337

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in sesskglogadmin.php in KGB 1.9 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the skinnn parameter, as demonstrated by invoking kg.php with a postek parameter containing PHP code, which is injected into a file in the kg directory, and then included by sesskglogadmin.php.

    Source:Kacper
    Published:18 Jan 2007
    6.8
    Medium

    CVE-2007-0335

    Last Modified: 6 Nov 2013

    Multiple directory traversal vulnerabilities in Jax Petition Book 1.0.3.06 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the languagepack parameter to (1) jax_petitionbook.php or (2) smileys.php.

    Source:ilker Kandemir
    Published:18 Jan 2007
    7.2
    High

    CVE-2007-0333

    Last Modified: 12 Nov 2013

    Agnitum Outpost Firewall PRO 4.0 allows local users to bypass access restrictions and insert Trojan horse drivers into the product's installation directory by creating links using FileLinkInformation requests with the ZwSetInformationFile function, as demonstrated by modifying SandBox.sys.

    Source:Matousec Transparent security
    Published:18 Jan 2007
    5
    Medium

    CVE-2007-0329

    Last Modified: 23 Apr 2026

    download.php in Joonas Viljanen JV2 Folder Gallery allows remote attackers to read sensitive files via a relative pathname in the file parameter, as demonstrated by config/gallerysetup.php. NOTE: this issue might be resultant from a directory traversal vulnerability.

    Source:PeTrO
    Published:18 Jan 2007
    9.3
    Critical

    CVE-2007-0325

    Last Modified: 10 Mar 2011

    Multiple buffer overflows in the Trend Micro OfficeScan Web-Deployment SetupINICtrl ActiveX control in OfficeScanSetupINI.dll, as used in OfficeScan 7.0 before Build 1344, OfficeScan 7.3 before Build 1241, and Client / Server / Messaging Security 3.0 before Build 1197, allow remote attackers to execute arbitrary code via a crafted HTML document.

    Source:Metasploit
    Published:20 Feb 2007
    7.5
    High

    CVE-2007-0316

    Last Modified: 6 Nov 2013

    Multiple SQL injection vulnerabilities in All In One Control Panel (AIOCP) 1.3.010 and earlier, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) xuser_name parameter to shared/code/cp_authorization.php, and the (2) did parameter to public/code/cp_downloads.php, different vectors than CVE-2007-0223.

    Source:Coloss
    Published:18 Jan 2007
    7.5
    High

    CVE-2007-0314

    Last Modified: 21 Sept 2016

    Multiple PHP remote file inclusion vulnerabilities in Article System 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the INCLUDE_DIR parameter to (1) forms.php, (2) issue_edit.php, (3) client.php, and (4) classes.php.

    Source:3l3ctric-Cracker
    Published:18 Jan 2007
    5
    Medium

    CVE-2007-0311

    Last Modified: 23 Apr 2026

    Texas Imperial Software WFTPD and WFTPD Pro Server 3.25 and earlier allow remote attackers to cause a denial of service (application crash) via a long SITE ADMIN command.

    Source:Marsu
    Published:18 Jan 2007
    7.5
    High

    CVE-2007-0309

    Last Modified: 6 Nov 2013

    SQL injection vulnerability in blocks/block-Old_Articles.php in Francisco Burzi PHP-Nuke 7.9 and earlier, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the cat parameter.

    Source:Paisterist
    Published:18 Jan 2007
    7.5
    High

    CVE-2007-0307

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in include/common.php in Poplar Gedcom Viewer 2.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the env[rootPath] parameter.

    Source:GoLd_M
    Published:18 Jan 2007
    7.5
    High

    CVE-2007-0306

    Last Modified: 2 Jan 2017

    SQL injection vulnerability in visu_user.asp in Digiappz DigiAffiliate 1.4 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:ajann
    Published:18 Jan 2007
    7.5
    High

    CVE-2007-0305

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in etkinlikbak.asp in Okul Web Otomasyon Sistemi 4.0.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:ilker Kandemir
    Published:18 Jan 2007