|
280061
|
- |
|
obie_website
|
mini_web_shop
|
Cross-site scripting (XSS) vulnerability in modules/viewcategory.php in Minh Nguyen Duong Obie Website Mini Web Shop 2.1.c allows remote attackers to inject arbitrary web script or HTML via the catna…
|
CWE-79
Cross-site Scripting
|
CVE-2006-6734
|
2018-10-18 06:49 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280062
|
- |
|
obie_website
|
mini_web_shop
|
modules/viewcategory.php in Minh Nguyen Duong Obie Website Mini Web Shop 2.1.c allows remote attackers to obtain sensitive information via a request with an arbitrary catname parameter but no itemsdb…
|
CWE-200
Information Exposure
|
CVE-2006-6735
|
2018-10-18 06:49 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280063
|
- |
|
mkportal
|
mkportal
|
Cross-site request forgery (CSRF) vulnerability in urlobox in MKPortal allows remote attackers to delete arbitrary messages as an administrator via a delete operation in an img BBcode tag.
|
CWE-352
Origin Validation Error
|
CVE-2006-6741
|
2018-10-18 06:49 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280064
|
- |
|
hp
|
ftp_print_server laserjet_5000 laserjet_5100
|
Multiple buffer overflows in FTP Print Server 2.4 and 2.4.5 in HP LaserJet 5000 Series printers with firmware R.25.15 or R.25.47, and HP LaserJet 5100 Series printers with firmware V.29.12, allow rem…
|
NVD-CWE-Other
|
CVE-2006-6742
|
2018-10-18 06:49 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280065
|
- |
|
dreaxteam
|
xt-news
|
Multiple cross-site scripting (XSS) vulnerabilities in Xt-News 0.1 allow remote attackers to inject arbitrary web script or HTML via the id_news parameter to (1) add_comment.php or (2) show_news.php.
|
CWE-79
Cross-site Scripting
|
CVE-2006-6746
|
2018-10-18 06:49 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280066
|
- |
|
dreaxteam
|
xt-news
|
SQL injection vulnerability in show_news.php in Xt-News 0.1 allows remote attackers to execute arbitrary SQL commands via the id_news parameter.
|
CWE-89
SQL Injection
|
CVE-2006-6747
|
2018-10-18 06:49 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280067
|
- |
|
openser
|
openser
|
Buffer overflow in the parse_expression function in parse_config in OpenSER 1.1.0 allows attackers to have an unknown impact via a long str parameter.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2006-6749
|
2018-10-18 06:49 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280068
|
- |
|
microsoft
|
windows_event_viewer
|
Event Viewer (eventvwr.exe) in Microsoft Windows does not properly display log data that contains '%' (percent) characters, which might make it impossible to use Event Viewer to determine the actual …
|
NVD-CWE-Other
|
CVE-2006-6753
|
2018-10-18 06:49 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280069
|
- |
|
ixprim
|
ixprim_cms
|
Multiple SQL injection vulnerabilities in Ixprim 1.2 allow remote attackers to execute arbitrary SQL commands via the story_id parameter to ixm_ixpnews.php, and unspecified other vectors.
|
NVD-CWE-Other
|
CVE-2006-6754
|
2018-10-18 06:49 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280070
|
- |
|
ixprim
|
ixprim_cms
|
Successful exploitation reportedly requires load_file privileges.
|
NVD-CWE-Other
|
CVE-2006-6754
|
2018-10-18 06:49 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|