|
280651
|
- |
|
ezb_systems
|
ultraiso
|
Directory traversal vulnerability in UltraISO 8.0.0.1392 allows remote attackers to write arbitrary files via a .. (dot dot) in a filename in an ISO image.
|
NVD-CWE-Other
|
CVE-2006-2099
|
2018-10-19 01:38 |
2006-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280652
|
- |
|
magic_iso_maker
|
magic_iso_maker
|
Directory traversal vulnerability in Magic ISO 5.0 Build 0166 allows remote attackers to write arbitrary files via a .. (dot dot) in a filename in an ISO image.
|
NVD-CWE-Other
|
CVE-2006-2100
|
2018-10-19 01:38 |
2006-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280653
|
- |
|
winiso_computing
|
winiso
|
Directory traversal vulnerability in WinISO 5.3 allows remote attackers to write arbitrary files via a .. (dot dot) in a filename in an ISO image.
|
NVD-CWE-Other
|
CVE-2006-2101
|
2018-10-19 01:38 |
2006-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280654
|
- |
|
poweriso
|
poweriso
|
Directory traversal vulnerability in PowerISO 2.9 allows remote attackers to write arbitrary files via a .. (dot dot) in a filename in an ISO image.
|
NVD-CWE-Other
|
CVE-2006-2102
|
2018-10-19 01:38 |
2006-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280655
|
- |
|
mybulletinboard
|
mybulletinboard
|
SQL injection vulnerability in MyBB (MyBulletinBoard) 1.1.1 allows remote authenticated administrators to execute arbitrary SQL commands via the (1) query string ($querystring variable) in (a) admin/…
|
CWE-89
SQL Injection
|
CVE-2006-2103
|
2018-10-19 01:38 |
2006-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280656
|
- |
|
mybulletinboard
|
mybulletinboard
|
Successful exploitation requires access to the admin section.
|
CWE-89
SQL Injection
|
CVE-2006-2103
|
2018-10-19 01:38 |
2006-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280657
|
- |
|
bl4
|
smtp_server
|
Buffer overflow in BL4 SMTP Server 0.1.4 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long argument to the (1) EHLO, (2) MAIL FROM, and (3)…
|
NVD-CWE-Other
|
CVE-2006-2107
|
2018-10-19 01:38 |
2006-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280658
|
- |
|
jsboard
|
jsboard
|
Cross-site scripting (XSS) vulnerability in the parse_query_str function in include/print.php in JSBoard 2.0.10 and 2.0.11, and possibly other versions before 2.0.12, allows remote attackers to injec…
|
NVD-CWE-Other
|
CVE-2006-2109
|
2018-10-19 01:38 |
2006-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280659
|
- |
|
jsboard
|
jsboard
|
This vulnerability is addressed in the following product release:
JSBoard, JSBoard, 2.0.12
|
NVD-CWE-Other
|
CVE-2006-2109
|
2018-10-19 01:38 |
2006-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280660
|
- |
|
microsoft
|
outlook_express
|
A component in Microsoft Outlook Express 6 allows remote attackers to bypass domain restrictions and obtain sensitive information via redirections with the mhtml: URI handler, as originally reported …
|
CWE-200
Information Exposure
|
CVE-2006-2111
|
2018-10-19 01:38 |
2006-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|