|
279911
|
- |
|
sphpblog
|
sphpblog
|
Multiple cross-site scripting (XSS) vulnerabilities in Simple PHP Blog (SPHPBlog), probably 0.4.8, allow remote attackers to inject arbitrary web script or HTML via (1) the action parameter in add_bl…
|
NVD-CWE-Other
|
CVE-2006-6032
|
2018-10-18 06:46 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279912
|
- |
|
sphpblog
|
sphpblog
|
Multiple directory traversal vulnerabilities in Simple PHP Blog (SPHPBlog), probably 0.4.8, allow remote attackers to read arbitrary files and possibly include arbitrary PHP code via a .. (dot dot) s…
|
NVD-CWE-Other
|
CVE-2006-6033
|
2018-10-18 06:46 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279913
|
- |
|
sitesoutlet
|
e-commerce_kit-1
|
Multiple SQL injection vulnerabilities in SitesOutlet E-commerce Kit-1 PayPal Edition allow remote attackers to execute arbitrary SQL commands via the (1) keyword or (2) cid parameter in (a) catalogu…
|
NVD-CWE-Other
|
CVE-2006-6034
|
2018-10-18 06:46 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279914
|
- |
|
leinir
|
travelsized_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Dan Jensen Travelsized CMS 0.4.1 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) page, (2) page_i…
|
CWE-79
Cross-site Scripting
|
CVE-2006-6037
|
2018-10-18 06:46 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279915
|
- |
|
jelsoft
|
vbulletin
|
Multiple cross-site scripting (XSS) vulnerabilities in admincp/index.php in Jelsoft vBulletin 3.6.x allow remote attackers to inject arbitrary web script or HTML via (1) the prefs parameter in a buil…
|
NVD-CWE-Other
|
CVE-2006-6040
|
2018-10-18 06:46 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279916
|
- |
|
laurent_van_den_reysen
|
work_system_e-commerce
|
Multiple PHP remote file inclusion vulnerabilities in Laurent Van den Reysen WORK system e-commerce 3.0.2, and other versions before 3.0.4, allow remote attackers to execute arbitrary PHP code via a …
|
CWE-94
Code Injection
|
CVE-2006-6041
|
2018-10-18 06:46 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279917
|
- |
|
phpwebthings
|
phpwebthings
|
PHP remote file inclusion vulnerability in core/editor.php in phpWebThings 1.5.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the …
|
NVD-CWE-Other
|
CVE-2006-6042
|
2018-10-18 06:46 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279918
|
- |
|
phpwebthings
|
phpwebthings
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2006-6042
|
2018-10-18 06:46 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279919
|
- |
|
phpquickgallery
|
phpquickgallery
|
PHP remote file inclusion vulnerability in gallery_top.inc.php in PHPQuickGallery 1.9 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the textFile parameter.
|
NVD-CWE-Other
|
CVE-2006-6044
|
2018-10-18 06:46 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279920
|
- |
|
comdev
|
comdev_one_admin_pro
|
Multiple PHP remote file inclusion vulnerabilities in Comdev One Admin Pro 4.1 allow remote attackers to execute arbitrary PHP code via a URL in the path[skin] parameter to (1) adminfoot.php, (2) adm…
|
NVD-CWE-Other
|
CVE-2006-6045
|
2018-10-18 06:46 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|