|
280141
|
- |
|
duware
|
dudirectory
|
Multiple SQL injection vulnerabilities in admin/default.asp in DUware DUdirectory 3.1, and possibly DUdirectory Pro and Pro SQL 3.x, allow remote attackers to execute arbitrary SQL commands via the (…
|
NVD-CWE-Other
|
CVE-2006-6455
|
2018-10-18 06:48 |
2006-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280142
|
- |
|
microsoft
|
office word word_viewer works
|
Unspecified vulnerability in Microsoft Word 2000, 2002, and 2003 and Word Viewer 2003 allows remote attackers to execute code via unspecified vectors related to malformed data structures that trigger…
|
NVD-CWE-Other
|
CVE-2006-6456
|
2018-10-18 06:48 |
2006-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280143
|
- |
|
tiki
|
tikiwiki_cms\/groupware
|
tiki-wiki_rss.php in Tikiwiki 1.9.5, 1.9.2, and possibly other versions allows remote attackers to obtain sensitive information (MySQL username and password) via an invalid (large or negative) ver pa…
|
CWE-200
Information Exposure
|
CVE-2006-6457
|
2018-10-18 06:48 |
2006-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280144
|
- |
|
phpbb
|
toplist
|
Cross-site scripting (XSS) vulnerability in toplist.php in PhpBB Toplist 1.3.7 allows remote attackers to inject arbitrary HTML or web script via the (1) Name and (2) Information fields when adding a…
|
NVD-CWE-Other
|
CVE-2006-6459
|
2018-10-18 06:48 |
2006-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280145
|
- |
|
mandiant
|
first_response
|
FRAgent.exe in Mandiant First Response (MFR) before 1.1.1, when run in daemon mode with SSL enabled, allows remote attackers to cause a denial of service (refused connections) via malformed requests,…
|
NVD-CWE-Other
|
CVE-2006-6475
|
2018-10-18 06:48 |
2006-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280146
|
- |
|
mandiant
|
first_response
|
Successful exploitation requires that the affected products are run in daemon mode with SSL enabled.
This vulnerability is addressed in the following product release:
Mandiant, First Response, 1.1.1
|
NVD-CWE-Other
|
CVE-2006-6475
|
2018-10-18 06:48 |
2006-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280147
|
- |
|
mandiant
|
first_response
|
FRAgent.exe in Mandiant First Response (MFR) before 1.1.1, when run in daemon mode and when the agent is bound to 0.0.0.0 (all interfaces), opens sockets in non-exclusive mode, which allows local use…
|
NVD-CWE-Other
|
CVE-2006-6476
|
2018-10-18 06:48 |
2006-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280148
|
- |
|
mandiant
|
first_response
|
Successful exploitation requires that the affected products are run in daemon mode and when the agent is bound to 0.0.0.0 (all interfaces).
This vulnerability is addressed in the following product r…
|
NVD-CWE-Other
|
CVE-2006-6476
|
2018-10-18 06:48 |
2006-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280149
|
- |
|
mandiant
|
first_response
|
FRAgent.exe in Mandiant First Response (MFR) before 1.1.1, when run in daemon mode and configured to use only HTTP, allows local users to modify requests and responses between a client and an agent b…
|
NVD-CWE-Other
|
CVE-2006-6477
|
2018-10-18 06:48 |
2006-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280150
|
- |
|
mandiant
|
first_response
|
Sucessful exploitation requires that the affected products are run in daemon mode and configured to use only HTTP.
This vulnerability is addressed in the following product release:
Mandiant, First …
|
NVD-CWE-Other
|
CVE-2006-6477
|
2018-10-18 06:48 |
2006-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|