|
279511
|
- |
|
invision_power_services
|
invision_power_board
|
If you've downloaded IPB 2.1.5 since the time of this post, there is no need to update your installation as the main download has been updated.
|
NVD-CWE-Other
|
CVE-2006-2060
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279512
|
- |
|
invision_power_services
|
invision_board invision_power_board
|
SQL injection vulnerability in lib/func_taskmanager.php in Invision Power Board (IPB) 2.1.x and 2.0.x before 20060425 allows remote attackers to execute arbitrary SQL commands via the ck parameter, w…
|
NVD-CWE-Other
|
CVE-2006-2061
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279513
|
- |
|
invision_power_services
|
invision_board invision_power_board
|
The vendor has released an update to address this and other versions.
|
NVD-CWE-Other
|
CVE-2006-2061
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279514
|
- |
|
phpsurveyor
|
phpsurveyor
|
SQL injection vulnerability in save.php in PHPSurveyor 0.995 and earlier allows remote attackers to execute arbitrary SQL commands via the surveyid cookie. NOTE: this issue could be leveraged to exe…
|
NVD-CWE-Other
|
CVE-2006-2065
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279515
|
- |
|
mkportal
|
mkportal
|
Multiple cross-site scripting (XSS) vulnerabilities pm_popup.php in MKPortal 1.1 Rc1 and earlier, as used with vBulletin 3.5.4 and earlier, allow remote attackers to inject arbitrary web script or HT…
|
CWE-79
Cross-site Scripting
|
CVE-2006-2066
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279516
|
- |
|
mkportal
|
mkportal
|
SQL injection vulnerability in vb_board_functions.php in MKPortal 1.1, as used with vBulletin 3.5.4 and earlier, allows remote attackers to execute arbitrary SQL commands via the userid parameter.
|
NVD-CWE-Other
|
CVE-2006-2067
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279517
|
- |
|
mybb
|
devbb
|
Cross-site scripting (XSS) vulnerability in member.php in DevBB 1.0.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the member parameter in a viewpro action.
|
NVD-CWE-Other
|
CVE-2006-2070
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279518
|
- |
|
mozilla
|
firefox mozilla_suite seamonkey thunderbird
|
The JavaScript engine in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 does not properly handle temporary variables that…
|
NVD-CWE-Other
|
CVE-2006-1742
|
2018-10-19 01:36 |
2006-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279519
|
- |
|
mozilla
|
firefox mozilla_suite seamonkey thunderbird
|
Fixed in: Firefox 1.5
Firefox 1.0.8
Thunderbird 1.5
Thunderbird 1.0.8
SeaMonkey 1.0
Mozilla Suite 1.7.13
|
NVD-CWE-Other
|
CVE-2006-1742
|
2018-10-19 01:36 |
2006-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279520
|
- |
|
smartisoft
|
phplistpro
|
PHP remote file inclusion vulnerability in config.php in phpListPro 2.0 and earlier allows remote attackers to execute arbitrary PHP code via the returnpath parameter. NOTE: this issue was later rep…
|
CWE-94
Code Injection
|
CVE-2006-1749
|
2018-10-19 01:36 |
2006-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|