| OSVDB ID | Disclosure Date | Title |
|
38197
Description:
(Description Provided by CVE) : The IAX2 channel driver (chan_iax2) in Asterisk Open 1.2.x before 1.2.23, 1.4.x before 1.4.9, and Asterisk Appliance Developer Kit before 0.6.0, when configured to allow unauthenticated calls, allows remote attackers to cause a denial of service (resource exhaustion) via a flood of calls that do not complete a 3-way handshake, which causes an ast_channel to be allocated but not released.
|
2007-07-23
|
Asterisk IAX2 Channel Driver (chan_iax2) Incomplete Connection Saturation Remote DoS
|
|
38755
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.13 (aka Sunglow) allow remote attackers to inject arbitrary web script or HTML via unspecified vectors in the (1) com_search, (2) com_content, and (3) mod_login components. NOTE: some of these details are obtained from third party information.
|
2007-07-23
|
Joomla! mod_login Component Unspecified XSS
|
|
38756
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.13 (aka Sunglow) allow remote attackers to inject arbitrary web script or HTML via unspecified vectors in the (1) com_search, (2) com_content, and (3) mod_login components. NOTE: some of these details are obtained from third party information.
|
2007-07-23
|
Joomla! com_content Component (components/com_content/content.php) order Parameter XSS
|
|
38757
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.0.13 (aka Sunglow) allow remote attackers to inject arbitrary web script or HTML via unspecified vectors in the (1) com_search, (2) com_content, and (3) mod_login components. NOTE: some of these details are obtained from third party information.
|
2007-07-23
|
Joomla! com_search Component Unspecified XSS
|
|
38758
Description:
(Description Provided by CVE) : Session fixation vulnerability in Joomla! before 1.0.13 (aka Sunglow) allows remote attackers to hijack administrative web sessions via unspecified vectors.
|
2007-07-23
|
Joomla! Unspecified Session Hijacking
|
|
36454
Description:
(Description Provided by CVE) : Centennial Discovery 2006 Feature Pack 1, which is used by (1) Numara Asset Manager 8.0 and (2) Symantec Discovery 6.5, uses insecure permissions on certain directories, which allows local users to gain privileges.
|
2007-07-23
|
Centennial Discovery Directory Permission Weakness Local Privilege Escalation
|
|
37980
Description:
(Description Provided by CVE) : The OLE2 parsing in Norman Antivirus before 5.91.02 allows remote attackers to cause a denial of service via a crafted DOC file that triggers a divide-by-zero error.
|
2007-07-23
|
Norman Antivirus OLE2 Parsing DOC Handling DoS
|
|
37981
Description:
(Description Provided by CVE) : The OLE2 parsing in Norman Antivirus before 5.91.02 allows remote attackers to bypass the malware detection via a crafted DOC file, resulting from an "integer cast around".
|
2007-07-23
|
Norman Antivirus OLE2 Parsing DOC Handling Scan Bypass
|
|
37982
Description:
(Description Provided by CVE) : Multiple buffer overflows in Norman Antivirus 5.90 allow remote attackers to execute arbitrary code via a crafted (1) ACE or (2) LZH file, resulting from an "integer cast around."
|
2007-07-23
|
Norman Antivirus ACE Archive Handling Multiple Overflows
|
|
37983
Description:
(Description Provided by CVE) : Multiple buffer overflows in Norman Antivirus 5.90 allow remote attackers to execute arbitrary code via a crafted (1) ACE or (2) LZH file, resulting from an "integer cast around."
|
2007-07-23
|
Norman Antivirus LZH Archive Handling
|
|
36223
Description:
(Description Provided by CVE) : The IM Server (aka IMserve or IMserver) 2.0.5.30 and probably earlier in Ipswitch Instant Messaging before 2.07 in Ipswitch Collaboration Suite (ICS) allows remote attackers to cause a denial of service (daemon crash) via certain data to TCP port 5179 that overwrites a destructor, as reachable by the (1) DoAttachVideoSender, (2) DoAttachVideoReceiver, (3) DoAttachAudioSender, and (4) DoAttachAudioReceiver functions.
|
2007-07-23
|
Ipswitch Instant Messaging Server Multiple Function Remote DoS
|
|
37122
Description:
(Description Provided by CVE) : The (1) aac_cfg_open and (2) aac_compat_ioctl functions in the SCSI layer ioctl path in aacraid in the Linux kernel before 2.6.23-rc2 do not check permissions for ioctls, which might allow local users to cause a denial of service or gain privileges.
|
2007-07-23
|
Linux Kernel AACRAID Driver IOCTL Multiple Function Local Privilege Escalation
|
|
36471
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in cv.asp in Asp cvmatik 1.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) Adiniz (Ady), (2) Soyadiniz (Soyady), (3) Ehliyet, (4) Askerlik, and (5) GSM parameters; and possibly other unspecified vectors.
|
2007-07-23
|
Asp cvmatik cv.asp Multiple Parameter XSS
|
|
36276
Description:
(Description Provided by CVE) : SQL injection vulnerability in editpost.php in phpMyForum before 4.1.4 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. NOTE: some of these details are obtained from third party information.
|
2007-07-23
|
phpMyForum editpost.php Unspecified SQL Injection
|
|
38568
Description:
(Description Provided by CVE) : Off-by-one error in the fsp_readdir_r function in fsplib.c in fsplib before 0.9 allows remote attackers to cause a denial of service via a directory entry whose length is exactly MAXNAMELEN, which prevents a terminating null byte from being added.
|
2007-07-23
|
fsplib fsplib.c fsp_readdir_r Function Off-by-one
|
|
38569
Description:
(Description Provided by CVE) : Multiple stack-based buffer overflows in fsplib.c in fsplib before 0.9 might allow remote attackers to execute arbitrary code via (1) a long filename that is not properly handled by the fsp_readdir_native function when MAXNAMLEN is greater than 255, or (2) a long d_name directory (dirent) field in the fsp_readdir function.
|
2007-07-23
|
fsplib fsplib.c fsp_readdir_native Function Filename Handling Overflow
|
|
38570
Description:
(Description Provided by CVE) : Multiple stack-based buffer overflows in fsplib.c in fsplib before 0.9 might allow remote attackers to execute arbitrary code via (1) a long filename that is not properly handled by the fsp_readdir_native function when MAXNAMLEN is greater than 255, or (2) a long d_name directory (dirent) field in the fsp_readdir function.
|
2007-07-23
|
fsplib fsplib.c fsp_readdir Function d_name Directory (dirent) Field Overflow
|
|
37135
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in index.asp in Alisveris Sitesi Scripti allows remote attackers to inject arbitrary web script or HTML via the q parameter in a search mod action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
|
2007-07-23
|
Alisveris Sitesi Scripti index.asp q Parameter XSS
|
|
37136
Description:
(Description Provided by CVE) : Multiple SQL injection vulnerabilities in index.asp in Alisveris Sitesi Scripti allow remote attackers to execute arbitrary SQL commands via the (1) product_id or (2) cat_id parameter in a product mod action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
|
2007-07-23
|
Alisveris Sitesi Scripti index.asp Multiple Parameter SQL Injection
|
|
38270
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in default.asp in Dora Emlak 1.0, when the goster parameter is set to iletisim, allow remote attackers to inject arbitrary web script or HTML via the (1) Adiniz and (2) Soyadiniz parameters; and possibly other unspecified vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
|
2007-07-23
|
Dora Emlak default.asp Multiple Parameter XSS
|
|
38271
Description:
(Description Provided by CVE) : SQL injection vulnerability in default.asp in Dora Emlak 1.0, when the goster parameter is set to emlakdetay, allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
|
2007-07-23
|
Dora Emlak default.asp id Parameter SQL Injection
|
|
39004
Description:
Unknown / Incomplete
|
2007-07-23
|
PHMe function_list.php action Parameter Local File Inclusion
|
|
43773
Description:
(Description Provided by CVE) : Microsoft Windows Explorer (explorer.exe) allows user-assisted remote attackers to cause a denial of service via a certain GIF file, as demonstrated by Art.gif.
|
2007-07-23
|
Microsoft Windows Explorer (explorer.exe) GIF File Handling Remote DoS
|
|
43774
Description:
(Description Provided by CVE) : Buffer overflow in Nipun Jain xserver 0.1 alpha allows remote attackers to cause a denial of service via a POST request with a long URI.
|
2007-07-23
|
xserver URI POST Request Remote Overflow DoS
|
|
73528
Description:
(Description Provided by CVE) : Double free vulnerability in IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0005 allows remote authenticated users to cause a denial of service (ABEND) via search operations that trigger recursive filter_free calls.
|
2007-07-23
|
IBM Tivoli Directory Server Search Operation Recursive filter_free Call Double-free Remote DoS
|
|
48697
Description:
Unknown / Incomplete
|
2007-07-22
|
Diet Tracker Multiple Unspecified SQL Injections
|
|
36277
Description:
(Description Provided by CVE) : SQL injection vulnerability in SearchResults.asp in ImageRacer 1.0, when WordSearchCrit is enabled, allows remote attackers to execute arbitrary SQL commands via the SearchWord parameter.
|
2007-07-22
|
ImageRacer SearchResults.asp SearchWord Parameter SQL Injection
|
|
46947
Description:
(Description Provided by CVE) : AlstraSoft Video Share Enterprise allows remote attackers to obtain sensitive information (the full path) via (1) a ' (quote) character in the category parameter to view_video.php, or (2) an XSS sequence in the UID parameter to (a) uprofile.php, (b) channel_detail.php, (c) uvideos.php, (d) groups_home.php, or (e) ufriends.php.
|
2007-07-22
|
AlstraSoft Video Share Enterprise view_video.php category Variable Path Disclosure
|
|
46948
Description:
(Description Provided by CVE) : AlstraSoft Video Share Enterprise allows remote attackers to obtain sensitive information (the full path) via (1) a ' (quote) character in the category parameter to view_video.php, or (2) an XSS sequence in the UID parameter to (a) uprofile.php, (b) channel_detail.php, (c) uvideos.php, (d) groups_home.php, or (e) ufriends.php.
|
2007-07-22
|
AlstraSoft Video Share Enterprise uprofile.php UID Variable Path Disclosure
|
|
46949
Description:
(Description Provided by CVE) : AlstraSoft Video Share Enterprise allows remote attackers to obtain sensitive information (the full path) via (1) a ' (quote) character in the category parameter to view_video.php, or (2) an XSS sequence in the UID parameter to (a) uprofile.php, (b) channel_detail.php, (c) uvideos.php, (d) groups_home.php, or (e) ufriends.php.
|
2007-07-22
|
AlstraSoft Video Share Enterprise channel_detail.php UID Variable Path Disclosure
|
|
46950
Description:
(Description Provided by CVE) : AlstraSoft Video Share Enterprise allows remote attackers to obtain sensitive information (the full path) via (1) a ' (quote) character in the category parameter to view_video.php, or (2) an XSS sequence in the UID parameter to (a) uprofile.php, (b) channel_detail.php, (c) uvideos.php, (d) groups_home.php, or (e) ufriends.php.
|
2007-07-22
|
AlstraSoft Video Share Enterprise uvideos.php UID Variable Path Disclosure
|
|
46951
Description:
(Description Provided by CVE) : AlstraSoft Video Share Enterprise allows remote attackers to obtain sensitive information (the full path) via (1) a ' (quote) character in the category parameter to view_video.php, or (2) an XSS sequence in the UID parameter to (a) uprofile.php, (b) channel_detail.php, (c) uvideos.php, (d) groups_home.php, or (e) ufriends.php.
|
2007-07-22
|
AlstraSoft Video Share Enterprise groups_home.php UID Variable Path Disclosure
|
|
46952
Description:
(Description Provided by CVE) : AlstraSoft Video Share Enterprise allows remote attackers to obtain sensitive information (the full path) via (1) a ' (quote) character in the category parameter to view_video.php, or (2) an XSS sequence in the UID parameter to (a) uprofile.php, (b) channel_detail.php, (c) uvideos.php, (d) groups_home.php, or (e) ufriends.php.
|
2007-07-22
|
AlstraSoft Video Share Enterprise ufriends.php UID Variable Path Disclosure
|
|
46953
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in AlstraSoft Affiliate Network Pro allow remote attackers to inject arbitrary web script or HTML via vectors in (a) merchants/index.php, including the (1) id or (2) msg parameter in a programedit action; the (3) pgmid parameter in an uploadProducts action; the (4) d, (5) m, or (6) y parameter in a daily action; the (7) err parameter in a ProgramReport action; the (8) i, (9) txtto, (10) txtfrom, or (11) programs parameter in a LinkReport action; or the (12) msg parameter in an add_money action; and one vector in (b) merchants/temp.php using (13) the rowid parameter. NOTE: vector 7 might overlap CVE-2005-3795.1.
|
2007-07-22
|
AlstraSoft Affiliate Network Pro merchants/index.php Multiple Parameter XSS
|
|
46954
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in AlstraSoft Affiliate Network Pro allow remote attackers to inject arbitrary web script or HTML via vectors in (a) merchants/index.php, including the (1) id or (2) msg parameter in a programedit action; the (3) pgmid parameter in an uploadProducts action; the (4) d, (5) m, or (6) y parameter in a daily action; the (7) err parameter in a ProgramReport action; the (8) i, (9) txtto, (10) txtfrom, or (11) programs parameter in a LinkReport action; or the (12) msg parameter in an add_money action; and one vector in (b) merchants/temp.php using (13) the rowid parameter. NOTE: vector 7 might overlap CVE-2005-3795.1.
|
2007-07-22
|
AlstraSoft Affiliate Network Pro merchants/temp.php rowid Parameter XSS
|
|
36858
Description:
(Description Provided by CVE) : The wordwrap function in PHP 4 before 4.4.8, and PHP 5 before 5.2.4, does not properly use the breakcharlen variable, which allows remote attackers to cause a denial of service (divide-by-zero error and application crash, or infinite loop) via certain arguments, as demonstrated by a 'chr(0), 0, ""' argument set.
|
2007-07-22
|
PHP wordwrap Function breakcharlen Variable DoS
|
|
38997
Description:
(Description Provided by CVE) : Minb Is Not a Blog (minb) stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing usernames and encrypted passwords via a direct request for db/users.db.
|
2007-07-22
|
Minb Is Not a Blog (minb) db/users.db Direct Request User Database Disclosure
|
|
52199
Description:
Unknown / Incomplete
|
2007-07-22
|
Linux Kernel TCP Vegas Code Unspecified Divide-by-zero DoS
|
|
37088
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in contact_author.php AlstraSoft Article Manager Pro allows remote attackers to inject arbitrary web script or HTML via the userid parameter.
|
2007-07-22
|
AlstraSoft Article Manager Pro contact_author.php userid Parameter XSS
|
|
37092
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in AlstraSoft AskMe Pro allow remote attackers to inject arbitrary web script or HTML via (1) the cat_id parameter to search.php or the (2) typ parameter to register.php.
|
2007-07-22
|
AlstraSoft AskMe Pro search.php cat_id Parameter XSS
|