|
279521
|
- |
|
dcscripts
|
dcforumlite
|
SQL injection vulnerability in dcboard.cgi in DCScripts DCForumLite 3.0 allows remote attackers to execute arbitrary SQL commands via the az parameter.
|
NVD-CWE-Other
|
CVE-2006-2050
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279522
|
- |
|
nextage
|
nextage_shopping_cart
|
Multiple cross-site scripting (XSS) vulnerabilities in myadmin/index.php in NextAge Shopping Cart allow remote attackers to inject arbitrary web script or HTML via the (1) username and (2) password p…
|
NVD-CWE-Other
|
CVE-2006-2051
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279523
|
- |
|
verosky_media
|
instant_photo_gallery
|
Cross-site scripting (XSS) vulnerability in Verosky Media Instant Photo Gallery allows remote attackers to inject arbitrary web script or HTML via the member parameter in a viewpro action in member.p…
|
NVD-CWE-Other
|
CVE-2006-2052
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279524
|
- |
|
invision_power_services
|
invision_power_board
|
action_public/search.php in Invision Power Board (IPB) 2.1.x and 2.0.x before 20060425 allows remote attackers to execute arbitrary PHP code via a search with a crafted value of the lastdate paramete…
|
NVD-CWE-Other
|
CVE-2006-2059
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279525
|
- |
|
invision_power_services
|
invision_power_board
|
Directory traversal vulnerability in action_admin/paysubscriptions.php in Invision Power Board (IPB) 2.1.x and 2.0.x before 20060425 allows remote authenticated administrators to include and execute …
|
NVD-CWE-Other
|
CVE-2006-2060
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279526
|
- |
|
invision_power_services
|
invision_power_board
|
If you've downloaded IPB 2.1.5 since the time of this post, there is no need to update your installation as the main download has been updated.
|
NVD-CWE-Other
|
CVE-2006-2060
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279527
|
- |
|
invision_power_services
|
invision_board invision_power_board
|
SQL injection vulnerability in lib/func_taskmanager.php in Invision Power Board (IPB) 2.1.x and 2.0.x before 20060425 allows remote attackers to execute arbitrary SQL commands via the ck parameter, w…
|
NVD-CWE-Other
|
CVE-2006-2061
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279528
|
- |
|
invision_power_services
|
invision_board invision_power_board
|
The vendor has released an update to address this and other versions.
|
NVD-CWE-Other
|
CVE-2006-2061
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279529
|
- |
|
phpsurveyor
|
phpsurveyor
|
SQL injection vulnerability in save.php in PHPSurveyor 0.995 and earlier allows remote attackers to execute arbitrary SQL commands via the surveyid cookie. NOTE: this issue could be leveraged to exe…
|
NVD-CWE-Other
|
CVE-2006-2065
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279530
|
- |
|
mkportal
|
mkportal
|
Multiple cross-site scripting (XSS) vulnerabilities pm_popup.php in MKPortal 1.1 Rc1 and earlier, as used with vBulletin 3.5.4 and earlier, allow remote attackers to inject arbitrary web script or HT…
|
CWE-79
Cross-site Scripting
|
CVE-2006-2066
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|