|
279511
|
- |
|
imagemagick
|
imagemagick
|
Format string vulnerability in the SetImageInfo function in image.c for ImageMagick 6.2.3 and other versions, and GraphicsMagick, allows user-assisted attackers to cause a denial of service (crash) a…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2006-0082
|
2018-10-20 00:42 |
2006-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279512
|
- |
|
lizard_cart
|
lizard_cart_cms
|
SQL injection vulnerability in (1) pages.php and (2) detail.php in Lizard Cart CMS 1.04 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2006-0087
|
2018-10-20 00:42 |
2006-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279513
|
- |
|
intouch
|
intouch
|
SQL injection vulnerability in intouch.lib.php in inTouch 0.5.1 Alpha allows remote attackers to execute arbitrary SQL commands via the user parameter.
|
NVD-CWE-Other
|
CVE-2006-0088
|
2018-10-20 00:42 |
2006-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279514
|
- |
|
linux
|
linux_kernel
|
dm-crypt in Linux kernel 2.6.15 and earlier does not clear a structure before it is freed, which leads to a memory disclosure that could allow local users to obtain sensitive information about a cryp…
|
NVD-CWE-Other
|
CVE-2006-0095
|
2018-10-20 00:42 |
2006-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279515
|
- |
|
php
|
php
|
Stack-based buffer overflow in the create_named_pipe function in libmysql.c in PHP 4.3.10 and 4.4.x before 4.4.3 for Windows allows attackers to execute arbitrary code via a long (1) arg_host or (2) …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2006-0097
|
2018-10-20 00:42 |
2006-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279516
|
- |
|
nicosw
|
nicoftp
|
Buffer overflow in NicoFTP 3.0.1.19 and earlier might allow local users to execute arbitrary code via a long string in the "Name of site" field of an FTP account. NOTE: because this program executes…
|
NVD-CWE-Other
|
CVE-2006-0100
|
2018-10-20 00:42 |
2006-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279517
|
- |
|
ralph_capper
|
tinyphpforum
|
Cross-site scripting (XSS) vulnerability in TinyPHPForum (TPF) 3.6 and earlier allows remote attackers to inject arbitrary web script via a javascript: scheme in an "[a]" bbcode tag, possibly the txt…
|
NVD-CWE-Other
|
CVE-2006-0102
|
2018-10-20 00:42 |
2006-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279518
|
- |
|
ralph_capper
|
tinyphpforum
|
TinyPHPForum 3.6 and earlier stores the (1) users/[USERNAME].hash and (2) users/[USERNAME].email files under the web root with insufficient access control, which allows remote attackers to list all r…
|
CWE-200
Information Exposure
|
CVE-2006-0103
|
2018-10-20 00:42 |
2006-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279519
|
- |
|
ralph_capper
|
tinyphpforum
|
Directory traversal vulnerability in TinyPHPForum 3.6 and earlier allows remote attackers to create a new user account, create a new topic, or view the profile of a user account, as demonstrated via …
|
NVD-CWE-Other
|
CVE-2006-0104
|
2018-10-20 00:42 |
2006-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279520
|
- |
|
postgresql
|
postgresql
|
PostgreSQL 8.0.x before 8.0.6 and 8.1.x before 8.1.2, when running on Windows, allows remote attackers to cause a denial of service (postmaster exit and no new connections) via a large number of simu…
|
NVD-CWE-Other
|
CVE-2006-0105
|
2018-10-20 00:42 |
2006-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|