|
279801
|
- |
|
microsoft
|
windows_xp
|
Windows Firewall in Microsoft Windows XP SP2 does not produce application alerts when an application is executed using the NTFS Alternate Data Streams (ADS) filename:stream syntax, which might allow …
|
NVD-CWE-Other
|
CVE-2006-1475
|
2018-10-19 01:32 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279802
|
- |
|
microsoft
|
windows_xp
|
Windows Firewall in Microsoft Windows XP SP2 produces incorrect application block alerts when the application filename is ".exe" (with no characters before the "."), which might allow local user-assi…
|
NVD-CWE-Other
|
CVE-2006-1476
|
2018-10-19 01:32 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279803
|
- |
|
turnkey_web_tools
|
php_live_helper
|
Multiple PHP remote file inclusion vulnerabilities in Turnkey Web Tools PHP Live Helper 1.8 allow remote attackers to include and execute arbitrary PHP code via the abs_path parameter in (1) initiate…
|
NVD-CWE-Other
|
CVE-2006-1477
|
2018-10-19 01:32 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279804
|
- |
|
turnkey_web_tools
|
php_live_helper
|
This vulnerability may affect all versions prior to 1.8 as well.
|
NVD-CWE-Other
|
CVE-2006-1477
|
2018-10-19 01:32 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279805
|
- |
|
turnkey_web_tools
|
php_live_helper
|
Directory traversal vulnerability in (1) initiate.php and (2) possibly other PHP scripts in Turnkey Web Tools PHP Live Helper 1.8, and possibly later versions, allows remote authenticated users to in…
|
NVD-CWE-Other
|
CVE-2006-1478
|
2018-10-19 01:32 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279806
|
- |
|
turnkey_web_tools
|
php_live_helper
|
This vulnerability may affect all other versions of Turnkey Web Tools, PHP Live Helper.
|
NVD-CWE-Other
|
CVE-2006-1478
|
2018-10-19 01:32 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279807
|
- |
|
conftool
|
conftool
|
Cross-site scripting (XSS) vulnerability in index.php in ConfTool 1.1 allows remote attackers to inject arbitrary web script or HTML via the page parameter.
|
NVD-CWE-Other
|
CVE-2006-1482
|
2018-10-19 01:32 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279808
|
- |
|
desiderata_software
|
blazix_web_server
|
Blazix Web Server before 1.2.6, when running on Windows, allows remote attackers to obtain the source code of JSP files via (1) . (dot), (2) space, and (3) slash characters in the extension of a URL.
|
NVD-CWE-Other
|
CVE-2006-1483
|
2018-10-19 01:32 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279809
|
- |
|
kye
|
genius_videocam_nb
|
Genius VideoCAM NB Driver does not drop privileges when saving files, which allows local users to gain privileges by opening arbitrary files via the "save as" dialog.
|
NVD-CWE-Other
|
CVE-2006-1484
|
2018-10-19 01:32 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279810
|
- |
|
source_workshop
|
vcounter
|
SQL injection vulnerability in vCounter.php in vCounter 1.0 allows remote attackers to execute arbitrary SQL commands via the URI (_SERVER[REQUEST_URI] variable).
|
NVD-CWE-Other
|
CVE-2006-1499
|
2018-10-19 01:32 |
2006-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|