|
279621
|
- |
|
shadowed_portal
|
shadowed_portal
|
Cross-site scripting (XSS) vulnerability in the Pages module in Shadowed Portal allows remote attackers to inject arbitrary web script or HTML via the page parameter to load.php.
|
NVD-CWE-Other
|
CVE-2006-1701
|
2018-10-19 01:33 |
2006-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279622
|
- |
|
spip
|
spip
|
PHP remote file inclusion vulnerability in spip_login.php3 in SPIP 1.8.3 allows remote attackers to execute arbitrary PHP code via a URL in the url parameter.
|
NVD-CWE-Other
|
CVE-2006-1702
|
2018-10-19 01:33 |
2006-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279623
|
- |
|
hubert_plisson
|
sire
|
PHP remote file inclusion vulnerability in lire.php in Sire 2.0 nws allows remote attackers to execute arbitrary PHP code via a URL in the rub parameter.
|
NVD-CWE-Other
|
CVE-2006-1703
|
2018-10-19 01:33 |
2006-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279624
|
- |
|
hubert_plisson
|
sire
|
Sire 2.0 nws allows remote attackers to upload arbitrary image files without authentication via a direct request to upload.php.
|
NVD-CWE-Other
|
CVE-2006-1704
|
2018-10-19 01:33 |
2006-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279625
|
- |
|
oracle
|
oracle10g oracle9i
|
Oracle Database 9.2.0.0 to 10.2.0.3 allows local users with "SELECT" privileges for a base table to insert, update, or delete data by creating a crafted view then performing the operations on that vi…
|
NVD-CWE-Other
|
CVE-2006-1705
|
2018-10-19 01:33 |
2006-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279626
|
- |
|
microsoft
|
excel excel_viewer
|
Buffer overflow in Microsoft Excel 2000 through 2003 allows user-assisted attackers to execute arbitrary code via a .xls file with a crafted COLINFO record, which triggers the overflow during a "data…
|
CWE-94
Code Injection
|
CVE-2006-1304
|
2018-10-19 01:32 |
2006-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279627
|
- |
|
microsoft
|
office outlook
|
Microsoft Outlook 2000, 2002, and 2003 allows user-assisted remote attackers to cause a denial of service (memory exhaustion and interrupted mail recovery) via malformed e-mail header information, po…
|
CWE-399
Resource Management Errors
|
CVE-2006-1305
|
2018-10-19 01:32 |
2006-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279628
|
- |
|
microsoft
|
excel excel_viewer
|
Microsoft Excel 2000 through 2004 allows user-assisted attackers to execute arbitrary code via a .xls file with a crafted BIFF record with an attacker-controlled array index that is used for a functi…
|
CWE-94
Code Injection
|
CVE-2006-1306
|
2018-10-19 01:32 |
2006-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279629
|
- |
|
microsoft
|
windows_2000 windows_2003_server windows_xp
|
Heap-based buffer overflow in the Server Service (SRV.SYS driver) in Microsoft Windows 2000 SP4, XP SP1 and SP2, Server 2003 up to SP1, and other products, allows remote attackers to execute arbitrar…
|
NVD-CWE-Other
|
CVE-2006-1314
|
2018-10-19 01:32 |
2006-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279630
|
- |
|
microsoft
|
server_service
|
The Server Service (SRV.SYS driver) in Microsoft Windows 2000 SP4, XP SP1 and SP2, Server 2003 up to SP1, and other products, allows remote attackers to obtain sensitive information via crafted reque…
|
NVD-CWE-Other
|
CVE-2006-1315
|
2018-10-19 01:32 |
2006-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|