|
289721
|
- |
|
minibb
|
minibb
|
Successful exploitation requires that "register_globals" is enabled.
This vulnerability is addressed in the following product update:
MiniBB, MiniBB, 2.0.2a
|
NVD-CWE-Other
|
CVE-2006-5673
|
2017-10-19 10:29 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289722
|
- |
|
uni-vert
|
phpleague
|
SQL injection vulnerability in consult/classement.php in Uni-Vert PhpLeague 0.82 and earlier allows remote attackers to execute arbitrary SQL commands via the champ parameter.
|
NVD-CWE-Other
|
CVE-2006-5676
|
2017-10-19 10:29 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289723
|
- |
|
efs_software
|
efs_web_server
|
Easy File Sharing (EFS) Web Server 4.0, when running on an NTFS file system, allows remote attackers to read arbitrary files under the web root by appending "::$DATA" to the end of a HTTP GET request…
|
NVD-CWE-Other
|
CVE-2006-5714
|
2017-10-19 10:29 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289724
|
- |
|
efs_software
|
easy_address_book
|
Easy File Sharing (EFS) Easy Address Book 1.2, when run on an NTFS file system, allows remote attackers to read arbitrary files under the web root by appending "::$DATA" to the end of an HTTP GET req…
|
NVD-CWE-Other
|
CVE-2006-5715
|
2017-10-19 10:29 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289725
|
- |
|
aep_networks
|
smartgate_ssl_server
|
The SSL server in AEP Smartgate 4.3b allows remote attackers to determine existence of directories via a direct request for a directory URI, which returns different HTTP status codes for existing and…
|
CWE-200
Information Exposure
|
CVE-2006-5725
|
2017-10-19 10:29 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289726
|
- |
|
dxmsoft
|
xm_easy_personal_ftp_server
|
XM Easy Personal FTP Server 5.2.1 and earlier allows remote authenticated users to cause a denial of service via a long argument to the NLST command, possibly involving the -al flags.
|
CWE-399
Resource Management Errors
|
CVE-2006-5728
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289727
|
- |
|
modxcms
|
modxcms
|
PHP remote file inclusion vulnerability in manager/media/browser/mcpuk/connectors/php/Commands/Thumbnail.php in Modx CMS 0.9.2.1 and earlier allows remote attackers to execute arbitrary PHP code via …
|
NVD-CWE-Other
|
CVE-2006-5730
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289728
|
- |
|
modxcms
|
modxcms
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2006-5730
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289729
|
- |
|
lithium_cms
|
lithium_cms
|
Directory traversal vulnerability in classes/index.php in Lithium CMS 4.04c and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the siteconf[curl] p…
|
NVD-CWE-Other
|
CVE-2006-5731
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289730
|
- |
|
tgs_cms
|
tgs_cms
|
SQL injection vulnerability in logout.php in T.G.S. CMS 0.1.7 and earlier allows remote attackers to execute arbitrary SQL commands via the myauthorid cookie.
|
NVD-CWE-Other
|
CVE-2006-5732
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|