|
280431
|
- |
|
adobe
|
coldfusion
|
Adobe ColdFusion MX7 allows remote attackers to obtain sensitive information via a URL request (1) for a non-existent (a) JWS, (b) CFM, (c) CFML, or (d) CFC file, which displays the installation path…
|
NVD-CWE-Other
|
CVE-2006-6482
|
2018-10-18 06:48 |
2006-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280432
|
- |
|
adobe
|
coldfusion
|
Adobe ColdFusion MX 7.x before 7.0.2 does not properly filter HTML tags when protecting against cross-site scripting (XSS) attacks, which allows remote attackers to inject arbitrary web script or HTM…
|
NVD-CWE-Other
|
CVE-2006-6483
|
2018-10-18 06:48 |
2006-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280433
|
- |
|
adobe
|
coldfusion
|
Successful exploitation requires that the target uses Microsoft Internet Explorer.
|
NVD-CWE-Other
|
CVE-2006-6483
|
2018-10-18 06:48 |
2006-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280434
|
- |
|
shopsite
|
shopsite
|
Multiple cross-site scripting (XSS) vulnerabilities in ShopSite 8.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the prevlocation parameter in shopper/sc/registration…
|
NVD-CWE-Other
|
CVE-2006-6485
|
2018-10-18 06:48 |
2006-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280435
|
- |
|
easypage
|
easypage
|
SQL injection vulnerability in EasyPage allows remote attackers to execute arbitrary SQL commands via unspecified vectors in sptrees/default.aspx, possibly involving the docId parameter. NOTE: this …
|
NVD-CWE-Other
|
CVE-2006-6486
|
2018-10-18 06:48 |
2006-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280436
|
- |
|
dt_guestbook
|
dt_guestbook
|
Cross-site scripting (XSS) vulnerability in index.php in DT Guestbook (dt_guestbook) 1.0f, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the err…
|
NVD-CWE-Other
|
CVE-2006-6487
|
2018-10-18 06:48 |
2007-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280437
|
- |
|
dt_guestbook
|
dt_guestbook
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2006-6487
|
2018-10-18 06:48 |
2007-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280438
|
- |
|
supportsoft symantec
|
scriptrunner smartissue automated_support_assistant norton_antivirus norton_internet_security norton_system_works
|
Multiple buffer overflows in the SupportSoft (1) SmartIssue (tgctlsi.dll) and (2) ScriptRunner (tgctlsr.dll) ActiveX controls, as used by Symantec Automated Support Assistant and Norton AntiVirus, In…
|
NVD-CWE-Other
|
CVE-2006-6490
|
2018-10-18 06:48 |
2007-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280439
|
- |
|
mozilla
|
firefox seamonkey thunderbird
|
Multiple unspecified vulnerabilities in the layout engine for Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allow remote attackers t…
|
NVD-CWE-Other
|
CVE-2006-6497
|
2018-10-18 06:48 |
2006-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280440
|
- |
|
mozilla
|
firefox mozilla thunderbird seamonkey
|
Multiple unspecified vulnerabilities in the JavaScript engine for Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, SeaMonkey before 1.0.7, and Mozilla 1.7 and pro…
|
NVD-CWE-noinfo
|
CVE-2006-6498
|
2018-10-18 06:48 |
2006-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|