|
279341
|
- |
|
greg_donald
|
destiney_links_script
|
Cross-site scripting (XSS) vulnerability in Destiney Links Script 2.1.2 allows remote attackers to inject arbitrary web script or HTML via the (1) "Search" (term parameter in index.php) and (2) "Add …
|
NVD-CWE-Other
|
CVE-2006-2536
|
2018-10-19 01:40 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279342
|
- |
|
ie_tab mozilla
|
ie_tab firefox
|
IE Tab 1.0.9 plugin for Mozilla Firefox 1.5.0.3 allows remote user-assisted attackers to cause a denial of service (application crash), possibly due to a null dereference, via certain Javascript, as …
|
NVD-CWE-Other
|
CVE-2006-2538
|
2018-10-19 01:40 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279343
|
- |
|
dieselscripts
|
diesel_job_site
|
Privacy leak in install.php for Diesel PHP Job Site sends sensitive information such as user credentials to an e-mail address controlled by the product developers.
|
NVD-CWE-Other
|
CVE-2006-2540
|
2018-10-19 01:40 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279344
|
- |
|
john_andersson
|
zixforum
|
SQL injection vulnerability in settings.asp in Zixforum 1.12 allows remote attackers to execute arbitrary SQL commands via the layid parameter to (1) login.asp and (2) main.asp.
|
NVD-CWE-Other
|
CVE-2006-2541
|
2018-10-19 01:40 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279345
|
- |
|
xtreme_scripts
|
xtreme_topsites
|
Xtreme Topsites 1.1 allows remote attackers to trigger MySQL errors and possibly conduct SQL injection attacks via unspecified vectors in join.php.
|
NVD-CWE-Other
|
CVE-2006-2543
|
2018-10-19 01:40 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279346
|
- |
|
xtreme_scripts
|
xtreme_topsites
|
Multiple cross-site scripting (XSS) vulnerabilities in Xtreme Topsites 1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in stats.php and (2) unspecified inpu…
|
CWE-79
Cross-site Scripting
|
CVE-2006-2545
|
2018-10-19 01:40 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279347
|
- |
|
sap
|
sapdba
|
Unspecified vulnerability in the sapdba command in SAP with Informix before 700, and 700 up to patch 100, allows local users to execute arbitrary commands via unknown vectors related to "insecure env…
|
NVD-CWE-Other
|
CVE-2006-2547
|
2018-10-19 01:40 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279348
|
- |
|
perlpodder prodder
|
perlpodder prodder
|
Prodder before 0.5, and perlpodder before 0.5, allows remote attackers to execute arbitrary code via shell metacharacters in the URL of a podcast (url attribute of an enclosure tag, or $enc_url varia…
|
CWE-94
Code Injection
|
CVE-2006-2548
|
2018-10-19 01:40 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279349
|
- |
|
pdf_tools_ag
|
pdf_form_filling_and_flattening_tool
|
Stack-based buffer overflow in PDF Form Filling and Flattening Tool before 3.1.0.12 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via long field names.
|
NVD-CWE-Other
|
CVE-2006-2549
|
2018-10-19 01:40 |
2006-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279350
|
- |
|
perlpodder
|
perlpodder
|
perlpodder before 0.5 allows remote attackers to execute arbitrary code via shell metacharacters in the URL of a podcast, which are executed when saving the URL to a log file. NOTE: the wget vector …
|
NVD-CWE-Other
|
CVE-2006-2550
|
2018-10-19 01:40 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|