| OSVDB ID | Disclosure Date | Title |
|
34397
Description:
A remote memory corruption flaw exists in CAPICOM. It fails to validate unspecified input resulting in memory corruption. With a specially crafted request, an attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2007-05-08
|
Microsoft CAPICOM CAPICOM.Certificates ActiveX (CAPICOM.dll) Remote Code Execution
|
|
36225
Description:
Unknown / Incomplete
|
2007-05-08
|
Connect Daily Management Reminders create/edit Token Security Check Failure
|
|
36251
Description:
(Description Provided by CVE) : Associated Press (AP) Newspower 4.0.1 and earlier uses a default blank password for the MySQL root account, which allows remote attackers to insert or modify news articles via shows.tblscript.
|
2007-05-08
|
Associated Press (AP) Newspower Default MySQL root Password
|
|
35926
Description:
(Description Provided by CVE) : The VFAT compat ioctls in the Linux kernel before 2.6.21.2, when run on a 64-bit system, allow local users to corrupt a kernel_dirent struct and cause a denial of service (system crash) via unknown vectors.
|
2007-05-08
|
Linux Kernel VFAT Compat IOCTLs Unspecified Local DoS
|
|
36061
Description:
(Description Provided by CVE) : Session fixation vulnerability in HP Systems Insight Manager (SIM) 4.2 and 5.0 SP4 and SP5 allows remote attackers to hijack web sessions by setting the JSESSIONID cookie.
|
2007-05-08
|
HP Systems Insight Manager (SIM) JSESSIONID Session Fixation
|
|
35880
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in CGX 20050314 allow remote attackers to execute arbitrary PHP code via a URL in the pathCGX parameter to (1) mtdialogo.php, (2) ltdialogo.php, (3) login.php, and (4) logingecon.php in inc/; and multiple unspecified files in frm/, sql/, and cns/.
|
2007-05-08
|
CGX inc/mtdialogo.php pathCGX Parameter Remote File Inclusion
|
|
35881
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in CGX 20050314 allow remote attackers to execute arbitrary PHP code via a URL in the pathCGX parameter to (1) mtdialogo.php, (2) ltdialogo.php, (3) login.php, and (4) logingecon.php in inc/; and multiple unspecified files in frm/, sql/, and cns/.
|
2007-05-08
|
CGX inc/ltdialogo.php pathCGX Parameter Remote File Inclusion
|
|
35882
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in CGX 20050314 allow remote attackers to execute arbitrary PHP code via a URL in the pathCGX parameter to (1) mtdialogo.php, (2) ltdialogo.php, (3) login.php, and (4) logingecon.php in inc/; and multiple unspecified files in frm/, sql/, and cns/.
|
2007-05-08
|
CGX inc/login.php pathCGX Parameter Remote File Inclusion
|
|
35883
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in CGX 20050314 allow remote attackers to execute arbitrary PHP code via a URL in the pathCGX parameter to (1) mtdialogo.php, (2) ltdialogo.php, (3) login.php, and (4) logingecon.php in inc/; and multiple unspecified files in frm/, sql/, and cns/.
|
2007-05-08
|
CGX inc/logingecon.php pathCGX Parameter Remote File Inclusion
|
|
35884
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in CGX 20050314 allow remote attackers to execute arbitrary PHP code via a URL in the pathCGX parameter to (1) mtdialogo.php, (2) ltdialogo.php, (3) login.php, and (4) logingecon.php in inc/; and multiple unspecified files in frm/, sql/, and cns/.
|
2007-05-08
|
CGX /frm/ Multiple Unspecified Script Remote File Inclusion
|
|
35885
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in CGX 20050314 allow remote attackers to execute arbitrary PHP code via a URL in the pathCGX parameter to (1) mtdialogo.php, (2) ltdialogo.php, (3) login.php, and (4) logingecon.php in inc/; and multiple unspecified files in frm/, sql/, and cns/.
|
2007-05-08
|
CGX /sql/ Multiple Unspecified Script Remote File Inclusion
|
|
35886
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in CGX 20050314 allow remote attackers to execute arbitrary PHP code via a URL in the pathCGX parameter to (1) mtdialogo.php, (2) ltdialogo.php, (3) login.php, and (4) logingecon.php in inc/; and multiple unspecified files in frm/, sql/, and cns/.
|
2007-05-08
|
CGX /cns/ Multiple Unspecified Script Remote File Inclusion
|
|
34340
Description:
(Description Provided by CVE) : Heap-based buffer overflow in the ConnectAsyncEx function in VNC Viewer ActiveX control (scvncctrl.dll) in the SmartCode VNC Manager 3.6 allows remote attackers to execute arbitrary code via a long argument.
|
2007-05-08
|
SmartCode VNC Manager VNC Viewer ActiveX (scvncctrl.dll) Overflow
|
|
35822
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in index.pl in Open Ticket Request System (OTRS) 2.0.x allows remote attackers to inject arbitrary web script or HTML via the Subaction parameter in an AgentTicketMailbox Action. NOTE: DEBIAN:DSA-1299 originally used this identifier for an ipsec-tools issue, but the proper identifier for the ipsec-tools issue is CVE-2007-1841.
|
2007-05-08
|
OTRS (Open Ticket Request System) Unspecified CSRF
|
|
40975
Description:
(Description Provided by CVE) : Multiple buffer overflows in the DB2 JDBC Applet Server (DB2JDS) service in IBM DB2 9.x and earlier allow remote attackers to (1) execute arbitrary code via a crafted packet to the DB2JDS service on tcp/6789; and cause a denial of service via (2) an invalid LANG parameter or (2) a long packet that generates a "MemTree overflow."
|
2007-05-08
|
IBM DB2 JDBC Applet Server (DB2JDS) Multiple Method MemTree Remote Overflow
|
|
35874
Description:
(Description Provided by CVE) : Buffer overflow in the IsOldAppInstalled function in the McSubMgr.McSubMgr Subscription Manager ActiveX control (MCSUBMGR.DLL) in McAfee SecurityCenter before 6.0.25 and 7.x before 7.2.147 allows remote attackers to execute arbitrary code via a crafted argument.
|
2007-05-08
|
McAfee SecurityCenter McSubMgr.McSubMgr Subscription Manager ActiveX (MCSUBMGR.DLL) IsOldAppInstalled Function Overflow
|
|
35873
Description:
(Description Provided by CVE) : Buffer overflow in the SetLanguage function in Research In Motion (RIM) TeamOn Import Object ActiveX control (TOImport.dll) allows remote attackers to execute arbitrary code via unspecified vectors.
|
2007-05-08
|
RIM TeamOn Import Object ActiveX (TOImport.dll) SetLanguage FunctionBuffer Remote Overflow
|
|
34765
Description:
(Description Provided by CVE) : The mysql_change_db function in MySQL 5.0.x before 5.0.40 and 5.1.x before 5.1.18 does not restore THD::db_access privileges when returning from SQL SECURITY INVOKER stored routines, which allows remote authenticated users to gain privileges.
|
2007-05-08
|
MySQL mysql_change_db Function THD::db_access Privilege Escalation
|
|
34766
Description:
(Description Provided by CVE) : MySQL before 4.1.23, 5.0.x before 5.0.42, and 5.1.x before 5.1.18 does not require the DROP privilege for RENAME TABLE statements, which allows remote authenticated users to rename arbitrary tables.
|
2007-05-08
|
MySQL RENAME TABLE Statement Arbitrary Table Name Modification
|
|
35789
Description:
A buffer overflow exists in ServerProtect. EarthAgent.exe fails to validate data received on TCP port 3628 resulting in a stack overflow. With a specially crafted request, a remote attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2007-05-08
|
Trend Micro ServerProtect EarthAgent.exe RPC Request Remote Overflow
|
|
35790
Description:
A buffer overflow exists in ServerProtect. SpntSvc.exe fails to validate data passed to the CAgRpcClient::CreateBinding() function resulting in a stack overflow. With a specially crafted request, a remote attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2007-05-08
|
Trend Micro ServerProtect SpntSvc.exe Service AgRpcCln.dll CAgRpcClient::CreateBinding() Function Remote Overflow
|
|
35791
Description:
(Description Provided by CVE) : Multiple buffer overflows in Trend Micro ServerProtect 5.58 before Security Patch 2- Build 1174 allow remote attackers to execute arbitrary code via a crafted RPC message processed by the (1) the RPCFN_ActiveRollback function in (a) stcommon.dll, or the (2) ENG_SetRealTimeScanConfigInfo or (3) ENG_SendEmail functions in (b) eng50.dll.
|
2007-05-08
|
Trend Micro ServerProtect eng50.dll Multiple Function Overflow
|
|
35792
Description:
(Description Provided by CVE) : Multiple buffer overflows in Trend Micro ServerProtect 5.58 before Security Patch 2- Build 1174 allow remote attackers to execute arbitrary code via a crafted RPC message processed by the (1) the RPCFN_ActiveRollback function in (a) stcommon.dll, or the (2) ENG_SetRealTimeScanConfigInfo or (3) ENG_SendEmail functions in (b) eng50.dll.
|
2007-05-08
|
Trend Micro ServerProtect stcommon.dll RPCFN_ActiveRollback RPC Call Overflow
|
|
35793
Description:
(Description Provided by CVE) : Buffer overflow in AgRpcCln.dll for Trend Micro ServerProtect 5.58 for Windows before Security Patch 3 Build 1176 allows remote attackers to execute arbitrary code via unknown vectors related to RPC requests. NOTE: this is probably a different vulnerability than CVE-2007-2508.
|
2007-05-08
|
Trend Micro ServerProtect AgRpcCln.dll Unspecified Overflow
|
|
37789
Description:
Miplex2 contains a flaw that may allow a remote attacker to execute arbitrary commands or code. The issue is due to the 'lib/smarty/SmartyFU.class.php' script not properly sanitizing user input supplied to the 'system[smarty][dir]' parameter. This may allow an attacker to include a file from a third-party remote host that contains commands or code that will be executed by the vulnerable script with the same privileges as the web server.
|
2007-05-08
|
Miplex2 lib/smarty/SmartyFU.class.php system[smarty][dir] Parameter Remote File Inclusion
|
|
37790
Description:
LaVague contains a flaw that may allow a remote attacker to execute arbitrary commands or code. The issue is due to the 'views/print/printbar.php' script not properly sanitizing user input supplied to the 'views_path' parameter. This may allow an attacker to include a file from a third-party remote host that contains commands or code that will be executed by the vulnerable script with the same privileges as the web server.
|
2007-05-08
|
LaVague views/print/printbar.php views_path Parameter Remote File Inclusion
|
|
37796
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in Crie seu PHPLojaFacil 0.1.5 allow remote attackers to execute arbitrary PHP code via a URL in the path_local parameter to (1) ftp.php, (2) libs/db.php, and (3) libs/ftp.php.
|
2007-05-08
|
PHPLojaFacil ftp.php path_local Parameter Remote File Inclusion
|
|
37797
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in Crie seu PHPLojaFacil 0.1.5 allow remote attackers to execute arbitrary PHP code via a URL in the path_local parameter to (1) ftp.php, (2) libs/db.php, and (3) libs/ftp.php.
|
2007-05-08
|
PHPLojaFacil libs/db.php path_local Parameter Remote File Inclusion
|
|
37798
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in Crie seu PHPLojaFacil 0.1.5 allow remote attackers to execute arbitrary PHP code via a URL in the path_local parameter to (1) ftp.php, (2) libs/db.php, and (3) libs/ftp.php.
|
2007-05-08
|
PHPLojaFacil libs/ftp.php path_local Parameter Remote File Inclusion
|
|
38248
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu scripts/libs/lom.php ETCDIR Parameter Remote File Inclusion
|
|
38249
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu scripts/lom_update.php ETCDIR Parameter Remote File Inclusion
|
|
38250
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu scripts/check-lom.php ETCDIR Parameter Remote File Inclusion
|
|
38251
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu scripts/weigh_keywords.php ETCDIR Parameter Remote File Inclusion
|
|
38252
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu web/logout.php LIBSDIR Parameter Remote File Inclusion
|
|
38253
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu web/help.php LIBSDIR Parameter Remote File Inclusion
|
|
38254
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu web/index.php LIBSDIR Parameter Remote File Inclusion
|
|
38255
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu web/login.php LIBSDIR Parameter Remote File Inclusion
|
|
38256
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu web/lom.php ETCDIR Parameter Remote File Inclusion
|
|
42108
Description:
The PEAR Installer contains a flaw that allows an attacker to traverse outside of a restricted path. The issue is due to the package.xml file not properly sanitizing user input, specifically directory traversal style attacks (e.g., ../../) supplied via multiple attributes. This directory traversal attack would allow a remote attacker to overwrite arbitrary files.
|
2007-05-07
|
PEAR package.xml Installer Multiple Attribute Traversal Arbitrary File Overwrite
|
|
36181
Description:
(Description Provided by CVE) : Directory traversal vulnerability in theme/acgv.php in ACGVannu 1.3 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the rubrik parameter.
|
2007-05-07
|
ACGVannu theme/acgv.php rubrik Parameter Traversal Arbitrary File Access
|