|
344411
|
- |
|
mozilla
|
firefox thunderbird
|
HTTP response smuggling vulnerability in Mozilla Firefox and Thunderbird before 1.5.0.4, when used with certain proxy servers, allows remote attackers to cause Firefox to interpret certain responses …
|
NVD-CWE-Other
|
CVE-2006-2786
|
2018-10-19 01:42 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344412
|
- |
|
mozilla
|
firefox thunderbird
|
EvalInSandbox in Mozilla Firefox and Thunderbird before 1.5.0.4 allows remote attackers to gain privileges via javascript that calls the valueOf method on objects that were created outside of the san…
|
NVD-CWE-Other
|
CVE-2006-2787
|
2018-10-19 01:42 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344413
|
- |
|
phpfox
|
phpfox
|
phpFoX allows remote authenticated users to modify arbitrary accounts via a modified NATIO cookie value, possibly the phpfox_user parameter.
|
NVD-CWE-Other
|
CVE-2006-2631
|
2018-10-19 01:41 |
2006-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344414
|
- |
|
andrew_godwin
|
bytehoard
|
Cross-site scripting (XSS) vulnerability in Andrew Godwin ByteHoard 2.1 and earlier allows remote authenticated users to inject arbitrary web script or HTML via file descriptions.
|
NVD-CWE-Other
|
CVE-2006-2632
|
2018-10-19 01:41 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344415
|
- |
|
andrew_godwin
|
bytehoard
|
Absolute path traversal vulnerability in the copy action in index.php in Andrew Godwin ByteHoard 2.1 and earlier allows remote authenticated users to create or overwrite files in other users' directo…
|
NVD-CWE-Other
|
CVE-2006-2633
|
2018-10-19 01:41 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344416
|
- |
|
neocrome
|
seditio
|
Cross-site scripting (XSS) vulnerability in Neocrome Land Down Under (LDU) in Neocrome Seditio 102 allows remote attackers to inject arbitrary web script or HTML via an HTTP Referer field.
|
NVD-CWE-Other
|
CVE-2006-2634
|
2018-10-19 01:41 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344417
|
- |
|
katy_whitton
|
newscmslite
|
newsadmin.asp in Katy Whitton NewsCMSLite allows remote attackers to bypass authentication and gain administrative access by setting the loggedIn cookie to "xY1zZoPQ".
|
CWE-287
Improper Authentication
|
CVE-2006-2636
|
2018-10-19 01:41 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344418
|
- |
|
tiki
|
tikiwiki_cms\/groupware
|
Multiple cross-site scripting (XSS) vulnerabilities in Tikiwiki (aka Tiki CMS/Groupware) 1.9.x allow remote attackers to inject arbitrary web script or HTML via malformed nested HTML tags such as "<s…
|
CWE-79
Cross-site Scripting
|
CVE-2006-2635
|
2018-10-19 01:41 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344419
|
- |
|
tuttophp
|
morris_guestbook pretty_guestbook smile_guestbook
|
Cross-site scripting (XSS) vulnerability in view.php in TuttoPhp (1) Morris Guestbook 1, (2) Pretty Guestbook 1, and (3) Smile Guestbook 1 allows remote attackers to inject arbitrary web script or HT…
|
NVD-CWE-Other
|
CVE-2006-2637
|
2018-10-19 01:41 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344420
|
- |
|
qjstudios
|
qjforum
|
SQL injection vulnerability in member.asp in qjForum allows remote attackers to execute arbitrary SQL commands via the uName parameter.
|
NVD-CWE-Other
|
CVE-2006-2638
|
2018-10-19 01:41 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|