|
344501
|
- |
|
open_searchable_image_catalogue
|
open_searchable_image_catalogue
|
Upgrade to version 0.7.0.1
|
NVD-CWE-Other
|
CVE-2006-2750
|
2018-10-19 01:41 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344502
|
- |
|
open_searchable_image_catalogue
|
open_searchable_image_catalogue
|
Cross-site scripting (XSS) vulnerability in Open Searchable Image Catalogue (OSIC) 0.7.0.1 and earlier allows remote attackers to inject arbitrary web scripts or HTML via the item_list parameter in s…
|
NVD-CWE-Other
|
CVE-2006-2751
|
2018-10-19 01:41 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344503
|
- |
|
open_searchable_image_catalogue
|
open_searchable_image_catalogue
|
Upgrade to version 0.7.0.1
|
NVD-CWE-Other
|
CVE-2006-2751
|
2018-10-19 01:41 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344504
|
- |
|
suse
|
suse_linux
|
The RedCarpet /etc/ximian/rcd.conf configuration file in Novell Linux Desktop 9 and SUSE SLES 9 has world-readable permissions, which allows attackers to obtain the rc (RedCarpet) password.
|
NVD-CWE-Other
|
CVE-2006-2752
|
2018-10-19 01:41 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344505
|
- |
|
openldap
|
openldap
|
Stack-based buffer overflow in st.c in slurpd for OpenLDAP before 2.3.22 might allow attackers to execute arbitrary code via a long hostname.
|
NVD-CWE-Other
|
CVE-2006-2754
|
2018-10-19 01:41 |
2006-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344506
|
- |
|
ubbcentral
|
ubb.threads
|
Cross-site scripting (XSS) vulnerability in index.php in UBBThreads 5.x and earlier allows remote attackers to inject arbitrary web script or HTML via the debug parameter, as demonstrated by stealing…
|
NVD-CWE-Other
|
CVE-2006-2755
|
2018-10-19 01:41 |
2006-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344507
|
- |
|
chipmunk_scripts
|
chipmunk_guestbook
|
Cross-site scripting (XSS) vulnerability in Chipmunk guestbook allows remote attackers to inject arbitrary web script or HTML via the (1) start parameter in (a) index.php; (2) forumID parameter in in…
|
NVD-CWE-Other
|
CVE-2006-2757
|
2018-10-19 01:41 |
2006-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344508
|
- |
|
webcalendar
|
webcalendar
|
PHP remote file inclusion vulnerability in includes/config.php in WebCalendar 1.0.3 allows remote attackers to execute arbitrary PHP code via a URL in the includedir parameter, which is remotely acce…
|
NVD-CWE-Other
|
CVE-2006-2762
|
2018-10-19 01:41 |
2006-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344509
|
- |
|
pre_projects
|
pre_news_manager
|
SQL injection vulnerability in Pre News Manager 1.0 allows remote attackers to execute arbitrary SQL commands via the (1) id parameter to (a) index.php, and the (2) nid parameter to (b) news_detail.p…
|
NVD-CWE-Other
|
CVE-2006-2763
|
2018-10-19 01:41 |
2006-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344510
|
- |
|
sourcefire
|
snort
|
The HTTP Inspect preprocessor (http_inspect) in Snort 2.4.0 through 2.4.4 allows remote attackers to bypass "uricontent" rules via a carriage return (\r) after the URL and before the HTTP declaration.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-2769
|
2018-10-19 01:41 |
2006-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|