|
280911
|
- |
|
dcscripts
|
dcforumlite
|
Cross-site scripting (XSS) vulnerability in dcboard.cgi in DCScripts DCForumLite 3.0 allows remote attackers to inject arbitrary web script or HTML via the az parameter.
|
NVD-CWE-Other
|
CVE-2006-2049
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280912
|
- |
|
dcscripts
|
dcforumlite
|
SQL injection vulnerability in dcboard.cgi in DCScripts DCForumLite 3.0 allows remote attackers to execute arbitrary SQL commands via the az parameter.
|
NVD-CWE-Other
|
CVE-2006-2050
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280913
|
- |
|
nextage
|
nextage_shopping_cart
|
Multiple cross-site scripting (XSS) vulnerabilities in myadmin/index.php in NextAge Shopping Cart allow remote attackers to inject arbitrary web script or HTML via the (1) username and (2) password p…
|
NVD-CWE-Other
|
CVE-2006-2051
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280914
|
- |
|
verosky_media
|
instant_photo_gallery
|
Cross-site scripting (XSS) vulnerability in Verosky Media Instant Photo Gallery allows remote attackers to inject arbitrary web script or HTML via the member parameter in a viewpro action in member.p…
|
NVD-CWE-Other
|
CVE-2006-2052
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280915
|
- |
|
invision_power_services
|
invision_power_board
|
action_public/search.php in Invision Power Board (IPB) 2.1.x and 2.0.x before 20060425 allows remote attackers to execute arbitrary PHP code via a search with a crafted value of the lastdate paramete…
|
NVD-CWE-Other
|
CVE-2006-2059
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280916
|
- |
|
invision_power_services
|
invision_power_board
|
Directory traversal vulnerability in action_admin/paysubscriptions.php in Invision Power Board (IPB) 2.1.x and 2.0.x before 20060425 allows remote authenticated administrators to include and execute …
|
NVD-CWE-Other
|
CVE-2006-2060
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280917
|
- |
|
invision_power_services
|
invision_power_board
|
If you've downloaded IPB 2.1.5 since the time of this post, there is no need to update your installation as the main download has been updated.
|
NVD-CWE-Other
|
CVE-2006-2060
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280918
|
- |
|
invision_power_services
|
invision_board invision_power_board
|
SQL injection vulnerability in lib/func_taskmanager.php in Invision Power Board (IPB) 2.1.x and 2.0.x before 20060425 allows remote attackers to execute arbitrary SQL commands via the ck parameter, w…
|
NVD-CWE-Other
|
CVE-2006-2061
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280919
|
- |
|
invision_power_services
|
invision_board invision_power_board
|
The vendor has released an update to address this and other versions.
|
NVD-CWE-Other
|
CVE-2006-2061
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280920
|
- |
|
phpsurveyor
|
phpsurveyor
|
SQL injection vulnerability in save.php in PHPSurveyor 0.995 and earlier allows remote attackers to execute arbitrary SQL commands via the surveyid cookie. NOTE: this issue could be leveraged to exe…
|
NVD-CWE-Other
|
CVE-2006-2065
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|