|
280651
|
- |
|
michaelis_freunde
|
contentnow
|
SQL injection vulnerability in index.php in ContentNow 1.39 and earlier allows remote attackers to execute arbitrary SQL commands via the pageid parameter. NOTE: this issue can be leveraged for path…
|
CWE-89
SQL Injection
|
CVE-2006-6157
|
2018-10-18 06:46 |
2006-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280652
|
- |
|
ace_helpdesk inverseflow pmos_helpdesk
|
ace_helpdesk help_desk pmos_helpdesk
|
Multiple cross-site scripting (XSS) vulnerabilities in (a) PMOS Help Desk 2.4, formerly (b) InverseFlow Help Desk 2.31 and also sold as (c) Ace Helpdesk 2.31, allow remote attackers to inject arbitra…
|
NVD-CWE-Other
|
CVE-2006-6158
|
2018-10-18 06:46 |
2006-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280653
|
- |
|
iodine
|
iodine
|
Stack-based buffer overflow in the handshake function in iodine 0.3.2 allows remote attackers to execute arbitrary code via a crafted DNS response.
|
NVD-CWE-Other
|
CVE-2006-5781
|
2018-10-18 06:45 |
2006-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280654
|
- |
|
hp
|
openview_client_configuraton_manager
|
radexecd.exe in HP OpenView Client Configuraton Manager (CCM) does not require authentication before executing commands in the installation directory, which allows remote attackers to cause a denial …
|
NVD-CWE-Other
|
CVE-2006-5782
|
2018-10-18 06:45 |
2006-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280655
|
- |
|
sap
|
sap_web_application_server
|
Unspecified vulnerability in enserver.exe in SAP Web Application Server 6.40 before patch 136 and 7.00 before patch 66 allows remote attackers to read arbitrary files via crafted data on a "3200+SYSN…
|
NVD-CWE-noinfo
|
CVE-2006-5784
|
2018-10-18 06:45 |
2006-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280656
|
- |
|
sap
|
sap_web_application_server
|
Unspecified vulnerability in SAP Web Application Server 6.40 before patch 136 and 7.00 before patch 66 allows remote attackers to cause a denial of service (enserver.exe crash) via a 0x72F2 sequence …
|
NVD-CWE-noinfo
|
CVE-2006-5785
|
2018-10-18 06:45 |
2006-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280657
|
- |
|
iprimal
|
iprimal_forums
|
PHP remote file inclusion vulnerability in (1) index.php and (2) admin/index.php in IPrimal Forums as of 20061105 allows remote attackers to execute arbitrary PHP code via a URL in the p parameter.
|
CWE-94
Code Injection
|
CVE-2006-5788
|
2018-10-18 06:45 |
2006-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280658
|
- |
|
jgaa
|
warftpd
|
War FTP Daemon (WarFTPd) 1.82.00-RC11 allows remote authenticated users to cause a denial of service via a large number of "%s" format strings in (1) CWD, (2) CDUP, (3) DELE, (4) NLST, (5) LIST, (6) …
|
CWE-399
Resource Management Errors
|
CVE-2006-5789
|
2018-10-18 06:45 |
2006-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280659
|
- |
|
greg_roelofs
|
libpng
|
The sPLT chunk handling code (png_set_sPLT function in pngset.c) in libpng 1.0.6 through 1.2.12 uses a sizeof operator on the wrong data type, which allows context-dependent attackers to cause a deni…
|
CWE-20
Improper Input Validation
|
CVE-2006-5793
|
2018-10-18 06:45 |
2006-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280660
|
- |
|
openbsd
|
openssh
|
Unspecified vulnerability in the sshd Privilege Separation Monitor in OpenSSH before 4.5 causes weaker verification that authentication has been successful, which might allow attackers to bypass auth…
|
NVD-CWE-Other
|
CVE-2006-5794
|
2018-10-18 06:45 |
2006-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|