|
289371
|
- |
|
actionapps
|
actionapps
|
PHP remote file inclusion vulnerabilities in ActionApps 2.8.1 allow remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[AA_INC_PATH] parameter in (1) cached.php3, (2) cron.php3, (…
|
CWE-94
Code Injection
|
CVE-2006-2686
|
2017-10-19 10:29 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289372
|
- |
|
fastpublish
|
fastpublish_cms
|
PHP remote file inclusion vulnerability in Fastpublish CMS 1.6.9.d allows remote attackers to include arbitrary files via the config[fsBase] parameter in (1) drucken.php, (2) drucken2.php, (3) email_…
|
NVD-CWE-Other
|
CVE-2006-2726
|
2017-10-19 10:29 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289373
|
- |
|
hot_open_tickets
|
hot_open_tickets
|
PHP remote file inclusion vulnerability in admin/lib_action_step.php in Hot Open Tickets (HOT) 11012004_ver2f, when register_globals is enabled, allows remote attackers to include arbitrary files via…
|
NVD-CWE-Other
|
CVE-2006-2730
|
2017-10-19 10:29 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289374
|
- |
|
ottoman
|
ottoman
|
PHP remote file inclusion vulnerability in Ottoman 1.1.2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the default_path parameter in (1) error.php, (2) …
|
CWE-94
Code Injection
|
CVE-2006-2767
|
2017-10-19 10:29 |
2006-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289375
|
- |
|
ipw_systems
|
metajour
|
PHP remote file inclusion vulnerability in METAjour 2.1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the (1) system_path parameter in a large number of…
|
NVD-CWE-Other
|
CVE-2006-2768
|
2017-10-19 10:29 |
2006-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289376
|
- |
|
ipw_systems
|
metajour
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2006-2768
|
2017-10-19 10:29 |
2006-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289377
|
- |
|
phpcommunitycalendar
|
phpcommunitycalendar
|
Multiple SQL injection vulnerabilities in phpCommunityCalendar 4.0.3 allow remote attackers to execute arbitrary SQL commands via the (1) CalendarDetailsID parameter in (a) month.php, (b) day.php, an…
|
NVD-CWE-Other
|
CVE-2006-2797
|
2017-10-19 10:29 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289378
|
- |
|
phpcommunitycalendar
|
phpcommunitycalendar
|
Multiple cross-site scripting (XSS) vulnerabilities in phpCommunityCalendar 4.0.3 allow remote attackers to inject arbitrary web script or HTML via the (1) LoName parameter in (a) week.php and (b) mo…
|
NVD-CWE-Other
|
CVE-2006-2798
|
2017-10-19 10:29 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289379
|
- |
|
cameron_mckay
|
informium
|
PHP remote file inclusion vulnerability in common-menu.php in Cameron McKay Informium 0.12.0 allows remote attackers to execute arbitrary PHP code via a URL in the CONF[local_path] parameter.
|
NVD-CWE-Other
|
CVE-2006-2818
|
2017-10-19 10:29 |
2006-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289380
|
- |
|
barnraiser
|
igloo
|
PHP remote file inclusion vulnerability in Wiki.php in Barnraiser Igloo 0.1.9 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the c_node[class_path] parameter.
|
NVD-CWE-Other
|
CVE-2006-2819
|
2017-10-19 10:29 |
2006-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|