|
280741
|
- |
|
studio_achtundachtzig
|
bloomooweb_activex_control
|
BlooMooWeb ActiveX control (AidemATL.dll) allows remote attackers to (1) download arbitrary files via a URL in the bstrUrl parameter to the BW_DownloadFile method, (2) execute arbitrary local files v…
|
NVD-CWE-Other
|
CVE-2006-5658
|
2018-10-18 06:44 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280742
|
- |
|
virtech
|
netquery
|
Cross-site scripting (XSS) vulnerability in nquser.php in VIRtech Netquery allows remote attackers to inject arbitrary web script or HTML via the User-Agent HTTP header.
|
NVD-CWE-Other
|
CVE-2006-5661
|
2018-10-18 06:44 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280743
|
- |
|
evandor
|
easy_notesmanager
|
SQL injection vulnerability in easy notesManager (eNM) 0.0.1 allows remote attackers to execute arbitrary SQL commands via (1) the username parameter in login.php and (2) a search on the "search page…
|
NVD-CWE-Other
|
CVE-2006-5662
|
2018-10-18 06:44 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280744
|
- |
|
p-book
|
p-book
|
Multiple PHP remote file inclusion vulnerabilities in P-Book 1.17 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the pb_lang parameter to (1) admin.php and (2) pbook.ph…
|
NVD-CWE-Other
|
CVE-2006-5667
|
2018-10-18 06:44 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280745
|
- |
|
cluster_resources
|
torque_resource_manager
|
resmom/start_exec.c in pbs_mom in TORQUE Resource Manager 2.0.0p8 and earlier allows local users to create arbitrary files via a symlink attack on (1) a job output file in /usr/spool/PBS/spool and po…
|
NVD-CWE-Other
|
CVE-2006-5677
|
2018-10-18 06:44 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280746
|
- |
|
tiki
|
tikiwiki_cms\/groupware
|
Tikiwiki 1.9.5 allows remote attackers to obtain sensitive information (MySQL username and password) via an empty sort_mode parameter in (1) tiki-listpages.php, (2) tiki-lastchanges.php, (3) messu-ar…
|
CWE-200
Information Exposure
|
CVE-2006-5702
|
2018-10-18 06:44 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280747
|
- |
|
tiki
|
tikiwiki_cms\/groupware
|
Cross-site scripting (XSS) vulnerability in tiki-featured_link.php in Tikiwiki 1.9.5 allows remote attackers to inject arbitrary web script or HTML via a url parameter that evades filtering, as demon…
|
CWE-79
Cross-site Scripting
|
CVE-2006-5703
|
2018-10-18 06:44 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280748
|
- |
|
phpeasydata_pro
|
phpeasydata_pro
|
SQL injection vulnerability in index.php in PHPEasyData Pro 1.4.1 and 2.2.1 allows remote attackers to execute arbitrary SQL commands via the cat parameter.
|
NVD-CWE-Other
|
CVE-2006-5707
|
2018-10-18 06:44 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280749
|
- |
|
eci_telecom
|
b-focus_wireless_802.11bg_adsl2\+_router
|
ECI Telecom B-FOCuS Wireless 802.11b/g ADSL2+ Router allows remote attackers to read arbitrary files via a certain HTTP request, as demonstrated by a request for a router configuration file, related …
|
NVD-CWE-Other
|
CVE-2006-5711
|
2018-10-18 06:44 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280750
|
- |
|
freenews
|
freenews
|
Directory traversal vulnerability in aff_news.php in FreeNews 2.1 allows remote attackers to include local files via a .. (dot dot) sequence in the chemin parameter, when the aff_news parameter is no…
|
NVD-CWE-Other
|
CVE-2006-5716
|
2018-10-18 06:44 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|