Show filters
664 Total Results
Displaying 451-460 of 664
Sort by:
Attacker Value
Unknown

CVE-2007-6315

Disclosure Date: December 12, 2007 (last updated October 04, 2023)
Group Chat in BarracudaDrive Web Server before 3.8 allows remote authenticated users to cause a denial of service (crash) via a HTTP request to /eh/chat.ehintf/C. that does not contain a Connection ID, which results in a NULL pointer dereference.
0
Attacker Value
Unknown

CVE-2007-6317

Disclosure Date: December 12, 2007 (last updated October 04, 2023)
Multiple directory traversal vulnerabilities in BarracudaDrive Web Server before 3.8 allow (1) remote attackers to read arbitrary files via certain ..\ (dot dot backslash) sequences in the URL path, or (2) remote authenticated users to delete arbitrary files or create arbitrary directories via a ..\ (dot dot backslash) sequence in the dir parameter to /drive/c/bdusers/USER/.
0
Attacker Value
Unknown

CVE-2007-6314

Disclosure Date: December 12, 2007 (last updated October 04, 2023)
BarracudaDrive Web Server before 3.8 allows remote attackers to read the source code for web scripts by appending a (1) + (plus), (2) . (dot), or (3) %80 and similar characters to the file name in the URL.
0
Attacker Value
Unknown

CVE-2007-6316

Disclosure Date: December 12, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in BarracudaDrive Web Server before 3.8 allows remote attackers to inject arbitrary web script or HTML via the URI path in an HTTP GET request, which is activated by administrators viewing log files via the Trace page.
0
Attacker Value
Unknown

CVE-2007-6235

Disclosure Date: December 04, 2007 (last updated October 04, 2023)
A certain ActiveX control in RealNetworks RealPlayer 11 allows remote attackers to cause a denial of service (application crash) via a malformed .au file that triggers a divide-by-zero error. NOTE: this might be related to CVE-2007-4904.
0
Attacker Value
Unknown

CVE-2007-6224

Disclosure Date: December 04, 2007 (last updated October 04, 2023)
The RealNetworks RealAudioObjects.RealAudio ActiveX control in rmoc3260.dll, as shipped with RealPlayer 11, allows remote attackers to cause a denial of service (browser crash) via a certain argument to the GetSourceTransport method.
0
Attacker Value
Unknown

CVE-2007-6118

Disclosure Date: November 23, 2007 (last updated October 04, 2023)
The MEGACO dissector in Wireshark (formerly Ethereal) 0.9.14 to 0.99.6 allows remote attackers to cause a denial of service (long loop and resource consumption) via unknown vectors.
0
Attacker Value
Unknown

CVE-2007-6121

Disclosure Date: November 23, 2007 (last updated October 04, 2023)
Wireshark (formerly Ethereal) 0.8.16 to 0.99.6 allows remote attackers to cause a denial of service (crash) via a malformed RPC Portmap packet.
0
Attacker Value
Unknown

CVE-2007-6120

Disclosure Date: November 23, 2007 (last updated October 04, 2023)
The Bluetooth SDP dissector Wireshark (formerly Ethereal) 0.99.2 to 0.99.6 allows remote attackers to cause a denial of service (infinite loop) via unknown vectors.
0
Attacker Value
Unknown

CVE-2007-6111

Disclosure Date: November 23, 2007 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in Wireshark (formerly Ethereal) allow remote attackers to cause a denial of service (crash) via (1) a crafted MP3 file or (2) unspecified vectors to the NCP dissector.
0