|
280711
|
- |
|
jean-christophe_ramos
|
ban pls-bannieres
|
SQL injection vulnerability in modules/bannieres/bannieres.php in Jean-Christophe Ramos SCRIPT BANNIERES (aka ban 0.1 and PLS-Bannieres 1.21) allows remote attackers to execute arbitrary SQL commands…
|
NVD-CWE-Other
|
CVE-2006-5907
|
2018-10-18 06:45 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280712
|
- |
|
paul_tarjan
|
stanford_conference_and_research_forum
|
generaloptions.php in Paul Tarjan Stanford Conference And Research Forum (SCARF) before 20070227 does not require the admin privilege, which allows remote attackers to reconfigure the application or …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-5909
|
2018-10-18 06:45 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280713
|
- |
|
microsoft
|
ie
|
Microsoft Internet Explorer 7 allows remote attackers to (1) cause a security certificate from a secure web site to appear invalid via a link to res://ieframe.dll/sslnavcancel.htm with the target sit…
|
NVD-CWE-Other
|
CVE-2006-5913
|
2018-10-18 06:45 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280714
|
- |
|
samedia
|
landshop
|
SQL injection vulnerability in ls.php in SAMEDIA LandShop allows remote attackers to execute arbitrary SQL commands via the infield parameter. NOTE: the start, search_order, search_type, and search_…
|
NVD-CWE-Other
|
CVE-2006-5914
|
2018-10-18 06:45 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280715
|
- |
|
samedia
|
landshop
|
Multiple cross-site scripting (XSS) vulnerabilities in ls.php in SAMEDIA LandShop allow remote attackers to inject arbitrary web script or HTML via the (1) start, (2) CAT_ID, (3) keyword, (4) search_…
|
NVD-CWE-Other
|
CVE-2006-5915
|
2018-10-18 06:45 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280716
|
- |
|
php_rapid_kill
|
php_rapid_kill
|
Unrestricted file upload vulnerability in RapidKill (aka PHP Rapid Kill) 5.7 Pro, and certain other versions, allows remote attackers to upload and execute arbitrary PHP scripts via the "Link to Down…
|
NVD-CWE-Other
|
CVE-2006-5918
|
2018-10-18 06:45 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280717
|
- |
|
activecampaign
|
knowledgebuilder
|
PHP remote file inclusion vulnerability in admin/e_data/visEdit_control.class.php in ActiveCampaign KnowledgeBuilder 2.2 allows remote attackers to execute arbitrary PHP code via a URL in the visEdit…
|
NVD-CWE-Other
|
CVE-2006-5919
|
2018-10-18 06:45 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280718
|
- |
|
wheatblog
|
wheatblog
|
Multiple cross-site scripting (XSS) vulnerabilities in add_comment.php in Wheatblog (wB) allow remote attackers to inject arbitrary web script or HTML via the (1) Name, (2) WWW, and (3) Comment field…
|
NVD-CWE-Other
|
CVE-2006-5921
|
2018-10-18 06:45 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280719
|
- |
|
wheatblog
|
wheatblog
|
index.php in Wheatblog (wB) allows remote attackers to obtain sensitive information via certain values of the postPtr[] and next parameters, which reveals the path in an error message.
|
NVD-CWE-Other
|
CVE-2006-5922
|
2018-10-18 06:45 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280720
|
- |
|
chris_mac
|
gimescripts_shopping_catalog
|
PHP remote file inclusion vulnerability in index.php in Chris Mac gtcatalog (aka GimeScripts Shopping Catalog) 0.9.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the…
|
NVD-CWE-Other
|
CVE-2006-5923
|
2018-10-18 06:45 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|