|
279291
|
- |
|
mozilla
|
firefox thunderbird
|
Mozilla, Thunderbird versions are only vulnerable if you turn on JavaScript in mail.
This vulnerability is addressed in the following product release:
Mozilla, Firefox, 1.5.0.4
Mozilla, Thunderbir…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-2775
|
2018-10-19 01:41 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279292
|
- |
|
mozilla
|
firefox thunderbird
|
Certain privileged UI code in Mozilla Firefox and Thunderbird before 1.5.0.4 calls content-defined setters on an object prototype, which allows remote attackers to execute code at a higher privilege …
|
NVD-CWE-Other
|
CVE-2006-2776
|
2018-10-19 01:41 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279293
|
- |
|
mozilla
|
firefox thunderbird
|
This vulnerability is addressed in the following product releases:
Mozilla, Firefox, 1.5.0.4
Mozilla, Thunderbird, 1.5.0.4
|
NVD-CWE-Other
|
CVE-2006-2776
|
2018-10-19 01:41 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279294
|
- |
|
zipcentral
|
zipcentral
|
Stack-based buffer overflow in ZipCentral 4.01 allows remote user-assisted attackers to execute arbitrary code via a ZIP archive containing a long filename.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2006-2439
|
2018-10-19 01:40 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279295
|
- |
|
apache
|
spamassassin
|
SpamAssassin before 3.1.3, when running with vpopmail and the paranoid (-P) switch, allows remote attackers to execute arbitrary commands via a crafted message that is not properly handled when invok…
|
NVD-CWE-noinfo
|
CVE-2006-2447
|
2018-10-19 01:40 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279296
|
- |
|
kde
|
kde
|
KDE Display Manager (KDM) in KDE 3.2.0 up to 3.5.3 allows local users to read arbitrary files via a symlink attack related to the session type for login.
|
NVD-CWE-Other
|
CVE-2006-2449
|
2018-10-19 01:40 |
2006-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279297
|
- |
|
kde
|
kde
|
Vendor links provide patches for each version affected.
|
NVD-CWE-Other
|
CVE-2006-2449
|
2018-10-19 01:40 |
2006-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279298
|
- |
|
libextractor
|
libextractor
|
Multiple heap-based buffer overflows in Libextractor 0.5.13 and earlier allow remote attackers to execute arbitrary code via (1) the asf_read_header function in the ASF plugin (plugins/asfextractor.c…
|
NVD-CWE-Other
|
CVE-2006-2458
|
2018-10-19 01:40 |
2006-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279299
|
- |
|
php_fusion
|
php_fusion
|
SQL injection vulnerability in messages.php in PHP-Fusion 6.00.307 and earlier allows remote authenticated users to execute arbitrary SQL commands via the srch_where parameter.
|
NVD-CWE-Other
|
CVE-2006-2459
|
2018-10-19 01:40 |
2006-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279300
|
- |
|
sugarcrm
|
sugarcrm
|
Sugar Suite Open Source (SugarCRM) 4.2 and earlier, when register_globals is enabled, does not protect critical variables such as $_GLOBALS and $_SESSION from modification, which allows remote attack…
|
NVD-CWE-Other
|
CVE-2006-2460
|
2018-10-19 01:40 |
2006-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|