|
348271
|
- |
|
krusader
|
krusader
|
Krusader 1.50-beta1 up to 1.70.0 stores passwords for remote connections in cleartext in the bookmark file (krbookmarks.xml), which allows attackers to steal passwords by obtaining the file.
|
NVD-CWE-Other
|
CVE-2006-3816
|
2011-03-8 11:39 |
2006-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348272
|
- |
|
geodesicsolutions
|
geoauctions_enterprise
|
SQL injection vulnerability in index.php in GeodesicSolutions GeoAuctions Enterprise 1.0.6 allows remote attackers to execute arbitrary SQL commands via the d parameter.
|
NVD-CWE-Other
|
CVE-2006-3822
|
2011-03-8 11:39 |
2006-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348273
|
- |
|
geodesicsolutions
|
geoauctions_enterprise
|
Successful exploitation requires that the 'accumulative feedback' feature is turned on.
|
NVD-CWE-Other
|
CVE-2006-3822
|
2011-03-8 11:39 |
2006-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348274
|
- |
|
phpfaber
|
topsites
|
Cross-site scripting (XSS) vulnerability in index.php in phpFaber TopSites 2.0.9 allows remote attackers to inject arbitrary web script or HTML via the i_cat parameter. NOTE: the provenance of this …
|
NVD-CWE-Other
|
CVE-2006-3902
|
2011-03-8 11:39 |
2006-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348275
|
- |
|
intel
|
2200bg_proset_wireless 2915abg_proset_wireless
|
Unspecified vulnerability in the Centrino (1) w22n50.sys, (2) w22n51.sys, (3) w29n50.sys, and (4) w29n51.sys Microsoft Windows drivers for Intel 2200BG and 2915ABG PRO/Wireless Network Connection bef…
|
NVD-CWE-Other
|
CVE-2006-3992
|
2011-03-8 11:39 |
2006-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348276
|
- |
|
intel
|
2200bg_proset_wireless 2915abg_proset_wireless
|
Affected versions are only vulnerable with driver version 9.0.4.16
This vulnerability is addressed in the following product releases:
Intel, 2200BG PROSet/Wireless, 10.5
Intel, 2915ABG PROSet/Wire…
|
NVD-CWE-Other
|
CVE-2006-3992
|
2011-03-8 11:39 |
2006-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348277
|
- |
|
ibm
|
websphere_application_server
|
Unspecified vulnerability in IBM WebSphere Application Server before 6.0.2.11 has unknown impact and attack vectors because the "UserNameToken cache was improperly used."
|
NVD-CWE-noinfo
|
CVE-2006-3232
|
2011-03-8 11:38 |
2006-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348278
|
- |
|
twiki
|
twiki
|
TWiki 01-Dec-2000 up to 4.0.3 allows remote attackers to bypass the upload filter and execute arbitrary code via filenames with double extensions such as ".php.en", ".php.1", and other allowed extens…
|
NVD-CWE-Other
|
CVE-2006-3336
|
2011-03-8 11:38 |
2006-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348279
|
- |
|
phpmaillist
|
phpmaillist
|
Cross-site scripting (XSS) vulnerability in maillist.php in PHPMailList 1.8.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the email parameter.
|
NVD-CWE-Other
|
CVE-2006-3482
|
2011-03-8 11:38 |
2006-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348280
|
- |
|
adaptive_technology_resource_centre
|
atutor
|
Multiple cross-site scripting (XSS) vulnerabilities in ATutor before 1.5.3 allow remote attackers to inject arbitrary web script or HTML via the (1) show_courses or (2) current_cat parameters to (a) …
|
NVD-CWE-Other
|
CVE-2006-3484
|
2011-03-8 11:38 |
2006-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|