|
345201
|
- |
|
mybulletinboard
|
mybulletinboard
|
SQL injection vulnerability in showthread.php in MyBB (aka MyBulletinBoard) 1.1.1 allows remote attackers to execute arbitrary SQL commands via the comma parameter.
|
NVD-CWE-Other
|
CVE-2006-2336
|
2018-10-19 01:39 |
2006-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345202
|
- |
|
d-link
|
dsl-g604t
|
Directory traversal vulnerability in webcm in the D-Link DSL-G604T Wireless ADSL Router Modem allows remote attackers to read arbitrary files via an absolute path in the getpage parameter.
|
CWE-22
Path Traversal
|
CVE-2006-2337
|
2018-10-19 01:39 |
2006-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345203
|
- |
|
planet_concept
|
planetstat
|
PlaNet Concept plaNetStat 20050127 allows remote attackers to gain administrative privileges, and view and configure log files, via a direct request to the (1) admin.php or (2) settings.php page.
|
NVD-CWE-Other
|
CVE-2006-2338
|
2018-10-19 01:39 |
2006-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345204
|
- |
|
symantec
|
enterprise_firewall gateway_security
|
The HTTP proxy in Symantec Gateway Security 5000 Series 2.0.1 and 3.0, and Enterprise Firewall 8.0, when NAT is being used, allows remote attackers to determine internal IP addresses by using malform…
|
CWE-200
Information Exposure
|
CVE-2006-2341
|
2018-10-19 01:39 |
2006-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345205
|
- |
|
oasyssoft
|
e-business_designer
|
E-Business Designer (eBD) 3.1.4 and earlier allows remote attackers to obtain the full path of the web server via "'" characters, and possibly other invalid values, in (1) the id parameter to form_gr…
|
NVD-CWE-Other
|
CVE-2006-2347
|
2018-10-19 01:39 |
2006-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345206
|
- |
|
oasyssoft
|
e-business_designer
|
Cross-site scripting (XSS) vulnerability in form_grupo.html in E-Business Designer (eBD) 3.1.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the id parameter. NOTE: …
|
NVD-CWE-Other
|
CVE-2006-2348
|
2018-10-19 01:39 |
2006-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345207
|
- |
|
oasyssoft
|
e-business_designer
|
E-Business Designer (eBD) 3.1.4 and earlier allows remote attackers to upload or modify arbitrary files, and execute arbitrary code, via a direct request to (1) common/html_editor/image_browser.uploa…
|
NVD-CWE-Other
|
CVE-2006-2349
|
2018-10-19 01:39 |
2006-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345208
|
- |
|
phpbb_group
|
phpbb
|
Cross-site scripting (XSS) vulnerability in charts.php in the Chart mod for phpBB allows remote attackers to inject arbitrary web script or HTML via the id parameter. NOTE: this issue might be resul…
|
NVD-CWE-Other
|
CVE-2006-2359
|
2018-10-19 01:39 |
2006-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345209
|
- |
|
phpbb_group
|
phpbb
|
SQL injection vulnerability in charts.php in the Chart mod for phpBB allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2006-2360
|
2018-10-19 01:39 |
2006-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345210
|
- |
|
limbo_cms
|
limbo_cms
|
SQL injection vulnerability in the weblinks option (weblinks.html.php) in Limbo CMS allows remote attackers to execute arbitrary SQL commands via the catid parameter.
|
CWE-89 CWE-16
SQL Injection Configuration
|
CVE-2006-2363
|
2018-10-19 01:39 |
2006-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|