Primary Vendor -- Product | Description | | CVSS Score | Source & Patch Info | AdventNet -- eventlog_analyzer
| AdventNet EventLog Analyzer build 4030 for Windows, and possibly other versions and platforms, installs a mysql instance with a default "root" account without a password, which allows remote attackers to gain privileges and modify logs. | | 7.5 | CVE-2007-6081 OTHER-REF BID
| AhnLab -- v3_internet_security
| AhnLab Antivirus 3 Internet Security 2008 Platinum appends data to a filename string at a location indicated by the "Filename length" field in a ZIP header, which allows remote attackers to cause a denial of service (machine crash) and possibly execute arbitrary code via a ZIP file in which this field's value is larger than the actual number of bytes in the filename. | | 9.3 | CVE-2007-6060 BUGTRAQ OTHER-REF BID
| Alcatel-Lucent -- OmniPCX
| The Communication Server in Alcatel-Lucent OmniPCX Enterprise 7.1 and earlier caches an IP address during a TFTP request from an IP Touch phone, and uses this IP address as the destination for all subsequent VoIP packets to this phone, which allows remote attackers to cause a denial of service (loss of audio) or intercept voice communications via a crafted TFTP request containing the phone's MAC address in the filename. | | 8.5 | CVE-2007-5361 BUGTRAQ OTHER-REF OTHER-REF BID
| Aleris -- Web Publishing Server
| SQL injection vulnerability in calendar/page.asp in Aleris Web Publishing Server 3.0 allows remote attackers to execute arbitrary SQL commands via the mode parameter. | | 7.5 | CVE-2007-6032 OTHER-REF OSVDB SECUNIA
| bcoos -- bcoos
| Directory traversal vulnerability in include/common.php in bcoos 1.0.10 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the xoopsOption[pagetype] parameter to the default URI for modules/news/. NOTE: this can be leveraged by using legitimate product functionality to upload a file that contains the code, then including that file. | | 7.5 | CVE-2007-6079 MILW0RM BID
| bcoos -- bcoos
| SQL injection vulnerability in modules/banners/click.php in the banners module for bcoos 1.0.10 allows remote attackers to execute arbitrary SQL commands via the bid parameter. | | 7.5 | CVE-2007-6080 MILW0RM BID
| Cacti -- Cacti
| SQL injection vulnerability in Cacti before 0.8.7a allows remote attackers to execute arbitrary SQL commands via unspecified vectors. | | 7.5 | CVE-2007-6035 OTHER-REF SECUNIA
| Clam Anti-Virus -- ClamAV
| Unspecified vulnerability in ClamAV 0.91.1 and 0.91.2 allows remote attackers to execute arbitrary code via a crafted e-mail message. NOTE: this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release actionable advisories. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine. | | 7.5 | CVE-2007-6029 OTHER-REF OTHER-REF BID
| Hotscripts -- clone_script
| SQL injection vulnerability in software-description.php in HotScripts Clone Script allows remote attackers to execute arbitrary SQL commands via the id parameter. | | 7.5 | CVE-2007-6084 MILW0RM
| IBM -- Director
| CIM Server in IBM Director 5.20.1 and earlier allows remote attackers to cause a denial of service (CPU consumption, connection slot exhaustion, and daemon crash) via a large number of idle connections. | | 7.8 | CVE-2007-5612 OTHER-REF CERT-VN BID FRSIRT SECUNIA
| IBM -- WebSphere MQ
| Multiple unspecified vulnerabilities in IBM WebSphere MQ 6.0 have unknown impact and remote attack vectors involving "memory corruption." NOTE: as of 20071116, the only disclosure is a vague pre-advisory with no actionable information. However, since it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes. | | 10.0 | CVE-2007-6044 BUGTRAQ OTHER-REF BID
| IBM -- DB2 Universal Database
| Unspecified vulnerability in (1) DB2WATCH and (2) DB2FREEZE in IBM DB2 UDB 9.1 before Fixpak 4 has unknown impact and attack vectors. | | 10.0 | CVE-2007-6045 OTHER-REF BID FRSIRT SECUNIA
| IBM -- DB2 Universal Database
| Unspecified vulnerability in unspecified setuid programs in IBM DB2 UDB 9.1 before Fixpak 4 allows local users to have an unknown impact. | | 7.2 | CVE-2007-6046 OTHER-REF BID FRSIRT SECUNIA
| IBM -- DB2 Universal Database
| Unspecified vulnerability in the DB2DART tool in IBM DB2 UDB 9.1 before Fixpak 4 allows attackers to execute arbitrary commands as the DB2 instance owner, related to invocation of TPUT by DB2DART. | | 10.0 | CVE-2007-6047 OTHER-REF BID FRSIRT SECUNIA
| IBM -- DB2 Universal Database
| IBM DB2 UDB 9.1 before Fixpak 4 uses incorrect permissions on ACLs for DB2NODES.CFG, which has unknown impact and attack vectors. NOTE: the vendor description of this issue is too vague to be certain that it is security-related. | | 10.0 | CVE-2007-6048 OTHER-REF BID FRSIRT SECUNIA
| IBM -- DB2 Universal Database
| Unspecified vulnerability in the SSL LOAD GSKIT action in IBM DB2 UDB 9.1 before Fixpak 4 has unknown impact and attack vectors, involving a call to dlopen when the effective uid is root. | | 7.2 | CVE-2007-6049 OTHER-REF AIXAPAR BID FRSIRT SECUNIA
| IBM -- DB2 Universal Database
| Unspecified vulnerability in DB2LICD in IBM DB2 UDB 9.1 before Fixpak 4 has unknown impact and attack vectors, related to creation of an "insecure directory." | | 7.2 | CVE-2007-6050 OTHER-REF AIXAPAR BID FRSIRT
| IBM -- DB2 Universal Database
| IBM DB2 UDB 9.1 before Fixpak 4 assigns incorrect privileges to the (1) DB2ADMNS and (2) DB2USERS alternative groups, which has unknown impact. NOTE: the vendor description of this issue is too vague to be certain that it is security-related. | | 10.0 | CVE-2007-6051 OTHER-REF AIXAPAR BID FRSIRT
| IBM -- DB2 Universal Database
| IBM DB2 UDB 9.1 before Fixpak 4 does not properly perform vector aggregation, which might allow attackers to cause a denial of service (divide-by-zero error and DBMS crash), related to an "overflow." NOTE: the vendor description of this issue is too vague to be certain that it is security-related. | | 7.8 | CVE-2007-6052 OTHER-REF BID FRSIRT
| IBM -- DB2 Universal Database
| IBM DB2 UDB 9.1 before Fixpak 4 does not properly handle use of large numbers of file descriptors, which might allow attackers to have an unknown impact involving "memory corruption." NOTE: the vendor description of this issue is too vague to be certain that it is security-related. | | 9.3 | CVE-2007-6053 OTHER-REF AIXAPAR BID FRSIRT
| IceBB -- IceBB
| SQL injection vulnerability in admin/index.php in IceBB 1.0-rc6 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header. | | 7.5 | CVE-2007-6083 MILW0RM OTHER-REF
| Ingate -- Ingate Firewall Ingate -- Ingate SIParator
| Buffer overflow in libsrtp in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 has unknown impact and attack vectors. NOTE: it is not clear whether this issue crosses privilege boundaries. | | 10.0 | CVE-2007-6092 OTHER-REF SECUNIA
| Ingate -- Ingate Firewall Ingate -- Ingate SIParator
| The SRTP implementation in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 allows remote attackers to cause a denial of service (kernel crash) via an RTCP index that is "much more than expected." | | 7.1 | CVE-2007-6093 OTHER-REF SECUNIA
| Ingate -- Ingate Firewall Ingate -- Ingate SIParator
| Unspecified vulnerability in the ICMP implementation in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 has unknown impact and remote attack vectors, related to ICMP packets that are "incorrectly accepted." | | 10.0 | CVE-2007-6097 OTHER-REF
| Ingate -- Ingate Firewall Ingate -- Ingate SIParator
| Ingate Firewall before 4.6.0 and SIParator before 4.6.0 do not log truncated (1) ICMP, (2) UDP, and (3) TCP packets, which has unknown impact and remote attack vectors; and do not log (4) serial-console login attempts with nonexistent usernames, which might make it easier for attackers with physical access to guess valid login credentials while avoiding detection. | | 7.5 | CVE-2007-6098 OTHER-REF
| Ingate -- Ingate Firewall Ingate -- Ingate SIParator
| Unspecified vulnerability in Ingate Firewall before 4.6.0 and SIParator before 4.6.0 might leave "media pinholes" open upon a restart of the SIP module, which might make it easier for remote attackers to conduct unauthorized activities. | | 10.0 | CVE-2007-6099 OTHER-REF
| JiRO -- Banner System
| Multiple SQL injection vulnerabilities in files/login.asp in JiRo's Banner System (JBS) 2.0, and possibly JiRo's Upload Manager (aka JiRo's Upload System or JUS), allow remote attackers to execute arbitrary SQL commands via the (1) Username (aka Login or Email) or (2) Password field. | | 7.5 | CVE-2007-6091 BUGTRAQ BID
| live555 -- Media Server
| The parseRTSPRequestString function in LIVE555 Media Server 2007.11.01 and earlier allows remote attackers to cause a denial of service (daemon crash) via a short RTSP query, which causes a negative number to be used during memory allocation. | | 7.1 | CVE-2007-6036 OTHER-REF OTHER-REF SECUNIA
| mebiblio -- mebiblio
| PHP remote file inclusion vulnerability in index.php in meBiblio 0.4.5 allows remote attackers to execute arbitrary PHP code via a URL in the action parameter. | | 9.3 | CVE-2007-6089 MILW0RM BID
| Microsoft -- windows Microsoft -- Office Microsoft -- Jet
| Stack-based buffer overflow in Microsoft msjet40.dll 4.0.8618.0 (aka Microsoft Jet Engine), as used by Access 2003 in Microsoft Office 2003 SP3, allows user-assisted attackers to execute arbitrary code via a crafted MDB file. | | 9.3 | CVE-2007-6026 BUGTRAQ FULLDISC OTHER-REF BID XF
| Microsoft -- windows
| The CryptGenRandom function in Microsoft Windows 2000 generates predictable values, which makes it easier for context-dependent attackers to reduce the effectiveness of cryptographic mechanisms, as demonstrated by attacks on (1) forward security and (2) backward security, related to use of eight instances of the RC4 cipher, and possibly a related issue to CVE-2007-3898. | | 7.1 | CVE-2007-6043 OTHER-REF OTHER-REF BID
| ngIRCd -- ngIRCd
| ngIRCd before 0.10.3 allows remote attackers to cause a denial of service (daemon crash) via a crafted IRC JOIN command. | | 7.8 | CVE-2007-6034 OTHER-REF SECUNIA
| PHP -- PHP
| The (1) htmlentities and (2) htmlspecialchars functions in PHP before 5.2.5 accept partial multibyte sequences, which has unknown impact and attack vectors, a different issue than CVE-2006-5465. | | 10.0 | CVE-2007-5898 OTHER-REF OTHER-REF SECTRACK SECUNIA
| phpbbviet -- phpbbviet
| PHP remote file inclusion vulnerability in includes/functions_mod_user.php in phpBBViet 02.03.07 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. | | 9.3 | CVE-2007-6088 MILW0RM BID
| profilecms -- ProfileCMS
| Multiple SQL injection vulnerabilities in index.php in ProfileCMS 1.0 and earlier allow remote attackers to execute arbitrary SQL commands via the id parameter in a (1) codes action in the profile-codes module, (2) videos action in the video-codes module, or (3) games action in the arcade-games module. | | 7.5 | CVE-2007-6058 MILW0RM
| rigs_of_rogs -- rigs_of_rogs
| Buffer overflow in the Sequencer::queueMessage function in sequencer.cpp in the server in Rigs of Rods (RoR) before 0.33d SP1 allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a nickname followed by a vehicle name in a MSG2_USE_VEHICLE message, whose combined length triggers the overflow. | | 7.5 | CVE-2007-6041 OTHER-REF OTHER-REF OTHER-REF SECUNIA XF
| sciurus -- sciurus_hosting_panel
| Direct static code injection vulnerability in acp/savenews.php in Sciurus Hosting Panel, possibly 2.0.3, allows remote attackers to inject arbitrary PHP code via the filecontents parameter, which can be executed by accessing includes/news.php. | | 9.3 | CVE-2007-6082 BUGTRAQ MILW0RM BID
| skyportal -- SkyPortal
| Multiple SQL injection vulnerabilities in SkyPortal RC6 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) nc_top.asp; (2) inc_bookmarks.asp, possibly involving a parameter passed from cp_main.asp; (3) inc_profile_functions.asp; or (4) inc_SUBSCRIPTIONS.asp; or the (5) Avatar_URL, (6) LINK1, or (7) LINK2 parameter to cp_main.asp in an EditIt action. | | 7.5 | CVE-2007-6078 MILW0RM BID
| Van Dyke Technologies -- Vshell
| Unspecified vulnerability in VanDyke VShell 3.0.1 allows remote attackers to cause a denial of service via unspecified vectors. NOTE: this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release actionable advisories. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine. | | 7.8 | CVE-2007-6031 OTHER-REF
| vigilecms -- vigilecms
| Directory traversal vulnerability in index.php in VigileCMS 1.4 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the module parameter. | | 9.3 | CVE-2007-6086 MILW0RM
| Weird Solutions -- BOOTPTurbo
| Unspecified vulnerability in Weird Solutions BOOTPTurbo 1.2 has unknown impact and remote attack vectors. NOTE: this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release actionable advisories. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine. | | 10.0 | CVE-2007-6030 OTHER-REF
| Wonderware -- InTouch
| Invensys Wonderware InTouch 8.0 creates a NetDDE share with insecure permissions (Everybody/Full Control), which allows remote authenticated attackers, possibly anonymous users, to execute arbitrary programs. | | 9.0 | CVE-2007-6033 OTHER-REF OTHER-REF CERT-VN BID
| wpa_supplicant -- wpa_supplicant
| Stack-based buffer overflow in driver_wext.c in wpa_supplicant 0.6.0 and earlier allows remote attackers to cause a denial of service (crash) via crafted TSF data. | | 7.1 | CVE-2007-6025 OTHER-REF OTHER-REF
|