|
280171
|
- |
|
openbsd
|
openbsd
|
The _dl_unsetenv function in loader.c in the ELF ld.so in OpenBSD 3.9 and 4.0 does not properly remove duplicate environment variables, which allows local users to pass dangerous variables such as LD…
|
NVD-CWE-Other
|
CVE-2006-6164
|
2018-10-18 06:47 |
2006-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280172
|
- |
|
gnupg
|
gnupg
|
Heap-based buffer overflow in the ask_outfile_name function in openfile.c for GnuPG (gpg) 1.4 and 2.0, when running interactively, might allow attackers to execute arbitrary code via messages with "C…
|
NVD-CWE-Other
|
CVE-2006-6169
|
2018-10-18 06:47 |
2006-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280173
|
- |
|
proftpd_project
|
proftpd
|
Buffer overflow in the tls_x509_name_oneline function in the mod_tls module, as used in ProFTPD 1.3.0a and earlier, and possibly other products, allows remote attackers to execute arbitrary code via …
|
NVD-CWE-Other
|
CVE-2006-6170
|
2018-10-18 06:47 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280174
|
- |
|
neocrome
|
seditio
|
SQL injection vulnerability in system/core/users/users.profile.inc.php in Neocrome Seditio 1.10 and earlier allows remote authenticated users to execute arbitrary SQL commands via a double-url-encode…
|
NVD-CWE-Other
|
CVE-2006-6177
|
2018-10-18 06:47 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280175
|
- |
|
clicktech
|
clickcontact
|
Multiple SQL injection vulnerabilities in default.asp in ClickTech ClickContact allow remote attackers to execute arbitrary SQL commands via the (1) AlphaSort, (2) In, and (3) orderby parameters.
|
NVD-CWE-Other
|
CVE-2006-6181
|
2018-10-18 06:47 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280176
|
- |
|
3com
|
3ctftpsvc
|
Multiple stack-based buffer overflows in 3Com 3CTftpSvc 2.0.1, and possibly earlier, allow remote attackers to cause a denial of service (crash) or execute arbitrary code via a long mode field (aka t…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2006-6183
|
2018-10-18 06:47 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280177
|
- |
|
alliedtelesyn
|
at-tftp
|
Multiple stack-based buffer overflows in Allied Telesyn TFTP Server (AT-TFTP) 1.9, and possibly earlier, allow remote attackers to cause a denial of service (crash) or execute arbitrary code via a lo…
|
NVD-CWE-Other
|
CVE-2006-6184
|
2018-10-18 06:47 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280178
|
- |
|
wabbit
|
wabbit_php_gallery
|
Directory traversal vulnerability in script.php in Wabbit PHP Gallery 0.9 allows remote attackers to read arbitrary files via a .. (dot dot) in the dir parameter to index.php.
|
NVD-CWE-Other
|
CVE-2006-6185
|
2018-10-18 06:47 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280179
|
- |
|
enomphp
|
enomphp
|
Multiple directory traversal vulnerabilities in enomphp 4.0 allow remote attackers to read arbitrary files via a .. (dot dot) in the dir parameter to (1) config.php, (2) ranklv_inside.php, (3) rankml…
|
NVD-CWE-Other
|
CVE-2006-6186
|
2018-10-18 06:47 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280180
|
- |
|
clicktech
|
clickgallery
|
Multiple SQL injection vulnerabilities in ClickTech Click Gallery allow remote attackers to execute arbitrary SQL commands via the (1) currentpage or (2) gallery_id parameter to (a) view_gallery.asp,…
|
NVD-CWE-Other
|
CVE-2006-6187
|
2018-10-18 06:47 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|