|
344431
|
- |
|
d-link
|
dsa-3100_airspot_gateway
|
Cross-site scripting (XSS) vulnerability in login_error.shtml for D-Link DSA-3100 allows remote attackers to inject arbitrary HTML or web script via an encoded uname parameter.
|
NVD-CWE-Other
|
CVE-2006-2653
|
2018-10-19 01:41 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344432
|
- |
|
vmware
|
server
|
VMware Server before RC1 does not clear user credentials from memory after a console connection is made, which might allow local attackers to gain privileges.
|
NVD-CWE-Other
|
CVE-2006-2662
|
2018-10-19 01:41 |
2006-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344433
|
- |
|
ifusionservices
|
iflance
|
Multiple cross-site scripting (XSS) vulnerabilities in iFlance 1.1 allow remote attackers to inject arbitrary web script or HTML via certain inputs to (1) acc_verify.php or (2) project.php.
|
CWE-79
Cross-site Scripting
|
CVE-2006-2663
|
2018-10-19 01:41 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344434
|
- |
|
ifdate.com
|
ifdate
|
Cross-site scripting (XSS) vulnerability in iFdate 1.2 allows remote attackers to inject arbitrary web script or HTML via the (1) username, (2) password fields, or certain other input text boxes.
|
NVD-CWE-Other
|
CVE-2006-2664
|
2018-10-19 01:41 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344435
|
- |
|
wordpress
|
wordpress
|
Direct static code injection vulnerability in WordPress 2.0.2 and earlier allows remote attackers to execute arbitrary commands by inserting a carriage return and PHP code when updating a profile, wh…
|
NVD-CWE-Other
|
CVE-2006-2667
|
2018-10-19 01:41 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344436
|
- |
|
docebolms
|
docebolms
|
Multiple PHP remote file inclusion vulnerabilities in Docebo LMS 2.05 allow remote attackers to execute arbitrary PHP code via a URL in the lang parameter to (1) modules/credits/business.php, (2) mod…
|
NVD-CWE-Other
|
CVE-2006-2668
|
2018-10-19 01:41 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344437
|
- |
|
preprojects.com
|
pre_shopping_mall
|
Multiple cross-site scripting (XSS) vulnerabilities in Pre Shopping Mall 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) search parameter in search.php (the "search box"…
|
CWE-79
Cross-site Scripting
|
CVE-2006-2669
|
2018-10-19 01:41 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344438
|
- |
|
calendarscripts.com
|
chatpat
|
Multiple cross-site scripting (XSS) vulnerabilities in ChatPat 1.0 allow remote attackers to inject arbitrary web script or HTML via a chat message in (1) fastchat.php and (2) fastshow.php.
|
NVD-CWE-Other
|
CVE-2006-2670
|
2018-10-19 01:41 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344439
|
- |
|
calendarscripts.com
|
chatpat
|
SQL injection vulnerability in ChatPat 1.0 allows remote attackers to execute arbitrary SQL commands via the nickname field.
|
NVD-CWE-Other
|
CVE-2006-2671
|
2018-10-19 01:41 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344440
|
- |
|
interquest_internet_services
|
realty_pro_one
|
Multiple cross-site scripting (XSS) vulnerabilities in Realty Pro One allow remote attackers to inject arbitrary web script or HTML via the (1) listingid parameter to (a) images.php, (b) index_other.…
|
NVD-CWE-Other
|
CVE-2006-2672
|
2018-10-19 01:41 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|