|
279501
|
- |
|
cam_development erik_dienske roger_aelbrecht
|
cam_unzip abakt tzipbuilder
|
Buffer overflow in (1) TZipBuilder 1.79.03.01, (2) Abakt 0.9.2 and 0.9.3-beta1, (3) CAM UnZip 4.0 and 4.3, and possibly other products, allows user-assisted attackers to execute arbitrary code via a …
|
NVD-CWE-Other
|
CVE-2006-2161
|
2018-10-19 01:38 |
2006-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279502
|
- |
|
sloughflash
|
sf-users
|
Cross-site scripting (XSS) vulnerability in SloughFlash SF-Users 1.0, possibly in register.php, allows remote attackers to inject arbitrary web script or HTML by setting the username field to contain…
|
NVD-CWE-Other
|
CVE-2006-2167
|
2018-10-19 01:38 |
2006-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279503
|
- |
|
fileprotection_express
|
fileprotection_express
|
FileProtection Express 1.0.1 and earlier allows remote attackers to bypass authentication via a cookie with an Admin value of 1.
|
NVD-CWE-Other
|
CVE-2006-2168
|
2018-10-19 01:38 |
2006-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279504
|
- |
|
gene6
|
g6_ftp_server
|
Buffer overflow in Gene6 FTP Server 3.1.0 allows remote authenticated attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long argument to (1) MKD or (2) XMKD, as…
|
NVD-CWE-Other
|
CVE-2006-2172
|
2018-10-19 01:38 |
2006-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279505
|
- |
|
ftrainsoft
|
fast_click
|
PHP remote file inclusion vulnerability in FtrainSoft Fast Click 2.3.8 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the path parameter to (1) show.php or (2) top.php.
|
NVD-CWE-Other
|
CVE-2006-2175
|
2018-10-19 01:38 |
2006-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279506
|
- |
|
bitdamaged
|
geoblog
|
Cross-site scripting (XSS) vulnerability in viewcat.php in geoBlog 1.0 allows remote attackers to inject arbitrary web script or HTML via the cat parameter.
|
NVD-CWE-Other
|
CVE-2006-2177
|
2018-10-19 01:38 |
2006-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279507
|
- |
|
zenphoto
|
zenphoto
|
zenphoto 1.0.1 beta and earlier allow remote attackers to obtain sensitive information via a direct request for the (1) /photos/themes/default/ and (2) /photos/themes/testing/ URIs, which reveals the…
|
NVD-CWE-Other
|
CVE-2006-2186
|
2018-10-19 01:38 |
2006-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279508
|
- |
|
zenphoto
|
zenphoto
|
Multiple cross-site scripting (XSS) vulnerabilities in zenphoto 1.0.1 beta and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) a parameter in i.php, and the (2) albu…
|
NVD-CWE-Other
|
CVE-2006-2187
|
2018-10-19 01:38 |
2006-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279509
|
- |
|
zenphoto
|
zenphoto
|
This vulnerability is addressed in the following product release:
zenphoto, zenphoto, 1.0.2 beta
|
NVD-CWE-Other
|
CVE-2006-2187
|
2018-10-19 01:38 |
2006-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279510
|
- |
|
cmscout
|
cmscout
|
Multiple cross-site scripting (XSS) vulnerabilities in CMScout 1.10 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the Body field of a private message (PM), (2) BBC…
|
NVD-CWE-Other
|
CVE-2006-2188
|
2018-10-19 01:38 |
2006-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|