|
347051
|
- |
|
ibm
|
db2_universal_database
|
IBM DB2 Universal Database (UDB) before 8.2 FixPak 12 allows remote attackers to cause a denial of service (application crash) by sending "incorrect information ... regarding the package name/creator…
|
CWE-399
Resource Management Errors
|
CVE-2006-3068
|
2011-10-17 13:00 |
2006-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
347052
|
- |
|
linux-ha
|
heartbeat
|
heartbeat.c in heartbeat before 2.0.6 sets insecure permissions in a shmget call for shared memory, which allows local users to cause an unspecified denial of service via unknown vectors, possibly du…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-3815
|
2011-10-17 13:00 |
2006-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
347053
|
- |
|
rim
|
blackberry_attachment_service blackberry_enterprise_server
|
Heap-based buffer overflow in Research in Motion (RIM) BlackBerry Attachment Service allows remote attackers to cause a denial of service (hang) via an e-mail attachment with a crafted TIFF file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2005-2341
|
2011-10-17 13:00 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
347054
|
- |
|
microsoft canon
|
ie network_camera_server_vb101
|
Internet Explorer 6 allows user-assisted remote attackers to read arbitrary files by tricking a user into typing the characters of the target filename in a text box and using the OnKeyDown, OnKeyPres…
|
CWE-200
Information Exposure
|
CVE-2006-2900
|
2011-10-11 13:00 |
2006-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
347055
|
- |
|
sun
|
j2se java_web_start
|
The Java Plug-in J2SE 1.3.0_02 through 5.0 Update 5, and Java Web Start 1.0 through 1.2 and J2SE 1.4.2 through 5.0 Update 5, allows remote attackers to exploit vulnerabilities by specifying a JRE ver…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-4302
|
2011-10-11 13:00 |
2006-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
347056
|
- |
|
joomla
|
joomla
|
Joomla! before 1.0.11 does not properly unset variables when the input data includes a numeric parameter with a value matching an alphanumeric parameter's hash value, which allows remote attackers to…
|
CWE-20
Improper Input Validation
|
CVE-2006-4466
|
2011-10-11 13:00 |
2006-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
347057
|
- |
|
spymac
|
spymac_web_os
|
Multiple cross-site scripting (XSS) vulnerabilities in Spymac Web OS 4.0 allow remote attackers to inject arbitrary web script or HTML via (a) the blogs module, including the (1) curr parameter in in…
|
CWE-79
Cross-site Scripting
|
CVE-2005-3511
|
2011-09-13 13:00 |
2005-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
347058
|
- |
|
horde
|
horde_application_framework
|
Multiple cross-site scripting (XSS) vulnerabilities in Horde Application Framework before 3.0.8 allow remote authenticated users to inject arbitrary web script or HTML via multiple vectors, as demons…
|
CWE-79
Cross-site Scripting
|
CVE-2005-4190
|
2011-09-13 13:00 |
2005-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
347059
|
- |
|
iatek
|
projectapp
|
Multiple cross-site scripting (XSS) vulnerabilities in ProjectApp 3.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the keywords parameter to (1) forums.asp, (2) searc…
|
CWE-79
Cross-site Scripting
|
CVE-2005-4485
|
2011-09-13 13:00 |
2005-12-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
347060
|
- |
|
sitekit_solutions
|
sitekit_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in Sitekit CMS 6.6 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) query string, (2) textonly, (3) locID, and…
|
CWE-79
Cross-site Scripting
|
CVE-2005-4491
|
2011-09-13 13:00 |
2005-12-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|