|
280361
|
- |
|
infinity_technologies
|
infinitytechs_restaurants_cm
|
Multiple SQL injection vulnerabilities in Infinitytechs Restaurants CM allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in rating.asp, (2) the mealid parameter in mea…
|
NVD-CWE-Other
|
CVE-2006-6269
|
2018-10-18 06:47 |
2006-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280362
|
- |
|
kervancilar
|
aspmforum
|
Multiple SQL injection vulnerabilities in ASPMForum allow remote attackers to execute arbitrary SQL commands via (1) the soruid parameter in forum2.asp, (2) the ak parameter in kullanicilistesi.asp, …
|
NVD-CWE-Other
|
CVE-2006-6270
|
2018-10-18 06:47 |
2006-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280363
|
- |
|
phpoll
|
phpoll
|
Multiple cross-site scripting (XSS) vulnerabilities in PHPOLL 0.96 allow remote attackers to inject arbitrary web script or HTML via the language parameter to (1) index.php, (2) info.php; and (3) ind…
|
NVD-CWE-Other
|
CVE-2006-6271
|
2018-10-18 06:47 |
2006-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280364
|
- |
|
paul_griffin
|
simple_php_gallery
|
Cross-site scripting (XSS) vulnerability in sp_index.php in Simple PHP Gallery 1.1 allows remote attackers to inject arbitrary web script or HTML via the dir parameter.
|
NVD-CWE-Other
|
CVE-2006-6272
|
2018-10-18 06:47 |
2006-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280365
|
- |
|
paul_griffin
|
simple_php_gallery
|
sp_index.php in Simple PHP Gallery 1.1 allows remote attackers to obtain sensitive information via an invalid dir parameter, which reveals the path in an error message.
|
NVD-CWE-Other
|
CVE-2006-6273
|
2018-10-18 06:47 |
2006-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280366
|
- |
|
expinion.net
|
inews_publisher news_manager
|
SQL injection vulnerability in articles.asp in Expinion.net iNews (1) Publisher (iNP) 2.5 and earlier, and possibly (2) News Manager, allows remote attackers to execute arbitrary SQL commands via the…
|
NVD-CWE-Other
|
CVE-2006-6274
|
2018-10-18 06:47 |
2006-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280367
|
- |
|
contentserv
|
contentserv
|
Directory traversal vulnerability in admin/FileServer.php in ContentServ 4.x allows remote attackers to read arbitrary files via a .. (dot dot) in the src parameter, a different vector than CVE-2005-…
|
NVD-CWE-Other
|
CVE-2006-6277
|
2018-10-18 06:47 |
2006-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280368
|
- |
|
alexphpteam
|
alex_guestbook
|
Cross-site scripting (XSS) vulnerability in index.php in @lex Guestbook 4.0.1 allows remote attackers to inject arbitrary web script or HTML via the skin parameter.
|
NVD-CWE-Other
|
CVE-2006-6278
|
2018-10-18 06:47 |
2006-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280369
|
- |
|
alexphpteam
|
alex_guestbook
|
index.php in @lex Guestbook 4.0.1 allows remote attackers to obtain sensitive information via a skin parameter referencing a nonexistent skin, which reveals the installation path in an error message.
|
NVD-CWE-Other
|
CVE-2006-6279
|
2018-10-18 06:47 |
2006-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280370
|
- |
|
o2php.com
|
oxygen
|
SQL injection vulnerability in viewthread.php in Oxygen (O2PHP Bulletin Board) 1.1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the pid parameter, a different vector th…
|
NVD-CWE-Other
|
CVE-2006-6280
|
2018-10-18 06:47 |
2006-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|