|
279891
|
- |
|
jbmc_software
|
directadmin
|
Multiple cross-site scripting (XSS) vulnerabilities in JBMC Software DirectAdmin 1.28.1 allow remote authenticated users to inject arbitrary web script or HTML via the (1) user parameter to (a) CMD_S…
|
NVD-CWE-Other
|
CVE-2006-5983
|
2018-10-18 06:46 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279892
|
- |
|
webhost_automation
|
helm_web_hosting_control_panel
|
Multiple cross-site scripting (XSS) vulnerabilities in Helm Web Hosting Control Panel 3.2.10 allow remote authenticated users to inject arbitrary web script or HTML via the (1) txtCompanyName, (2) tx…
|
NVD-CWE-Other
|
CVE-2006-5984
|
2018-10-18 06:46 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279893
|
- |
|
aspintranet
|
aspintranet
|
SQL injection vulnerability in default.asp in ASPintranet, possibly 1.2, allows remote attackers to execute arbitrary SQL commands via the a parameter.
|
NVD-CWE-Other
|
CVE-2006-5987
|
2018-10-18 06:46 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279894
|
- |
|
vmware
|
virtualcenter
|
VMWare VirtualCenter client 2.x before 2.0.1 Patch 1 (Build 33643) and 1.4.x before 1.4.1 Patch 1 (Build 33425), when server certificate verification is enabled, does not verify the server's X.509 ce…
|
CWE-20
Improper Input Validation
|
CVE-2006-5990
|
2018-10-18 06:46 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279895
|
- |
|
cactusoft
|
cactushop
|
Multiple SQL injection vulnerabilities in wwweb concepts CactuShop allow remote attackers to execute arbitrary SQL commands via the (1) prodtype parameter in prodtype.asp and the (2) product paramete…
|
NVD-CWE-Other
|
CVE-2006-5991
|
2018-10-18 06:46 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279896
|
- |
|
microsoft
|
office word word_viewer works
|
Unspecified vulnerability in Microsoft Word 2000 and 2002, Office Word and Word Viewer 2003, Word 2004 and 2004 v. X for Mac, and Works 2004, 2005, and 2006 allows remote attackers to execute arbitra…
|
NVD-CWE-noinfo
|
CVE-2006-5994
|
2018-10-18 06:46 |
2006-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279897
|
- |
|
webevents
|
online_event_registration
|
save_profile.asp in WebEvents (Online Event Registration Template) 2.0 and earlier allows remote attackers to change the profiles, passwords, and other information for arbitrary users via a modified …
|
NVD-CWE-Other
|
CVE-2006-6007
|
2018-10-18 06:46 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279898
|
- |
|
sap
|
sap_web_application_server
|
SAP allows remote attackers to obtain potentially sensitive information such as operating system and SAP version via an RFC_SYSTEM_INFO RfcCallReceive request, a different vulnerability than CVE-2003…
|
NVD-CWE-Other
|
CVE-2006-6010
|
2018-10-18 06:46 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279899
|
- |
|
sap
|
sap_web_application_server
|
Unspecified vulnerability in SAP Web Application Server before 6.40 patch 6 allows remote attackers to cause a denial of service (enserver.exe crash) via a certain UDP packet to port 64999, aka "two …
|
NVD-CWE-Other
|
CVE-2006-6011
|
2018-10-18 06:46 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279900
|
- |
|
sap
|
sap_web_application_server
|
This vulnerability is addressed in the following product update:
SAP, SAP Web Application Server, 6.40 patch 6
|
NVD-CWE-Other
|
CVE-2006-6011
|
2018-10-18 06:46 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|