|
280191
|
- |
|
sourcefire
|
snort
|
The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options, which allows remote attackers to evade detection of certain attacks, possibly…
|
NVD-CWE-Other
|
CVE-2006-0839
|
2018-10-19 01:29 |
2006-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280192
|
- |
|
mantis
|
mantis
|
manage_user_page.php in Mantis 1.00rc4 and earlier does not properly handle a sort parameter containing a ' (quote) character, which allows remote attackers to trigger a SQL error that may be repeate…
|
NVD-CWE-Other
|
CVE-2006-0840
|
2018-10-19 01:29 |
2006-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280193
|
- |
|
mantis
|
mantis
|
Multiple cross-site scripting (XSS) vulnerabilities in Mantis 1.00rc4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) hide_status, (2) handler_id, (3) user_monit…
|
NVD-CWE-Other
|
CVE-2006-0841
|
2018-10-19 01:29 |
2006-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280194
|
- |
|
truenorth_software
|
ia_emailserver
|
Buffer overflow in the IMAP service of TrueNorth Internet Anywhere (IA) eMailserver 5.3.4 allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code vi…
|
NVD-CWE-Other
|
CVE-2006-0853
|
2018-10-19 01:29 |
2006-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280195
|
- |
|
rahul_dhesi
|
zoo
|
Stack-based buffer overflow in the fullpath function in misc.c for zoo 2.10 and earlier, as used in products such as Barracuda Spam Firewall, allows user-assisted attackers to execute arbitrary code …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2006-0855
|
2018-10-19 01:29 |
2006-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280196
|
- |
|
scriptme
|
sme_gb_host
|
SQL injection vulnerability in login.php in Scriptme SmE GB Host 1.21 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the Username parameter.
|
NVD-CWE-Other
|
CVE-2006-0856
|
2018-10-19 01:29 |
2006-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280197
|
- |
|
e107
|
chatbox_plugin e107
|
Cross-site scripting (XSS) vulnerability in Chatbox Plugin 1.0 in e107 0.7.2 allows remote attackers to inject arbitrary HTML or web script via a Chatbox, as demonstrated using a SCRIPT element.
|
CWE-79
Cross-site Scripting
|
CVE-2006-0857
|
2018-10-19 01:29 |
2006-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280198
|
- |
|
starforce
|
safe_n_sec_personal_\+_anti-spyware
|
Unquoted Windows search path vulnerability in (1) snsmcon.exe, (2) the autostartup mechanism, and (3) an unspecified installation component in StarForce Safe'n'Sec Personal + Anti-Spyware 2.0 and ear…
|
NVD-CWE-Other
|
CVE-2006-0858
|
2018-10-19 01:29 |
2006-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280199
|
- |
|
michael_salzer
|
guestbox
|
Michael Salzer Guestbox 0.6, and other versions before 0.8, allows remote attackers to post an admin comment to a guestbook entry via a certain modified form, possibly related to the nummer parameter.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-0859
|
2018-10-19 01:29 |
2006-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280200
|
- |
|
michael_salzer
|
guestbox
|
Multiple cross-site scripting (XSS) vulnerabilities in Michael Salzer Guestbox 0.6, and other versions before 0.8, allow remote attackers to inject arbitrary web script or HTML via (1) HTML tags that…
|
CWE-79
Cross-site Scripting
|
CVE-2006-0860
|
2018-10-19 01:29 |
2006-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|