|
280581
|
- |
|
fetchmail
|
fetchmail
|
fetchmail 6.3.5 and 6.3.6 before 6.3.6-rc4, when refusing a message delivered via the mda option, allows remote attackers to cause a denial of service (crash) via unknown vectors that trigger a NULL …
|
CWE-20
Improper Input Validation
|
CVE-2006-5974
|
2018-10-18 06:46 |
2006-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280582
|
- |
|
drumster
|
blogme
|
Multiple cross-site scripting (XSS) vulnerabilities in comments.asp in BlogMe 3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) Name, (2) URL, or (3) Comments field.
|
NVD-CWE-Other
|
CVE-2006-5975
|
2018-10-18 06:46 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280583
|
- |
|
verity
|
ultraseek
|
Verity Ultraseek before 5.7 allows remote attackers to obtain sensitive information via direct requests with (1) a null ("%00") terminated url parameter to help/urlstatusgo.html; or missing parameter…
|
NVD-CWE-Other
|
CVE-2006-5970
|
2018-10-18 06:46 |
2006-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280584
|
- |
|
drumster
|
blogme
|
Multiple SQL injection vulnerabilities in admin_login.asp in BlogMe 3.0 allow remote attackers to execute arbitrary SQL commands via the (1) Username or (2) Password field. NOTE: some of these detai…
|
NVD-CWE-Other
|
CVE-2006-5976
|
2018-10-18 06:46 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280585
|
- |
|
expinion.net
|
multicalendars
|
Multiple SQL injection vulnerabilities in MultiCalendars allow remote attackers to execute arbitrary SQL commands via the (1) M or (2) Y parameter to rss_out.asp, or the (3) cate parameter to all_cal…
|
NVD-CWE-Other
|
CVE-2006-5977
|
2018-10-18 06:46 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280586
|
- |
|
jbmc_software
|
directadmin
|
Multiple cross-site scripting (XSS) vulnerabilities in JBMC Software DirectAdmin 1.28.1 allow remote authenticated users to inject arbitrary web script or HTML via the (1) user parameter to (a) CMD_S…
|
NVD-CWE-Other
|
CVE-2006-5983
|
2018-10-18 06:46 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280587
|
- |
|
webhost_automation
|
helm_web_hosting_control_panel
|
Multiple cross-site scripting (XSS) vulnerabilities in Helm Web Hosting Control Panel 3.2.10 allow remote authenticated users to inject arbitrary web script or HTML via the (1) txtCompanyName, (2) tx…
|
NVD-CWE-Other
|
CVE-2006-5984
|
2018-10-18 06:46 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280588
|
- |
|
aspintranet
|
aspintranet
|
SQL injection vulnerability in default.asp in ASPintranet, possibly 1.2, allows remote attackers to execute arbitrary SQL commands via the a parameter.
|
NVD-CWE-Other
|
CVE-2006-5987
|
2018-10-18 06:46 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280589
|
- |
|
vmware
|
virtualcenter
|
VMWare VirtualCenter client 2.x before 2.0.1 Patch 1 (Build 33643) and 1.4.x before 1.4.1 Patch 1 (Build 33425), when server certificate verification is enabled, does not verify the server's X.509 ce…
|
CWE-20
Improper Input Validation
|
CVE-2006-5990
|
2018-10-18 06:46 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280590
|
- |
|
cactusoft
|
cactushop
|
Multiple SQL injection vulnerabilities in wwweb concepts CactuShop allow remote attackers to execute arbitrary SQL commands via the (1) prodtype parameter in prodtype.asp and the (2) product paramete…
|
NVD-CWE-Other
|
CVE-2006-5991
|
2018-10-18 06:46 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|