|
278731
|
- |
|
qto
|
qtofilemanager
|
Directory traversal vulnerability in qtofm.php in QTOFileManager 1.0 allows remote attackers to modify arbitrary files via a .. (dot dot) sequence in the edit parameter.
|
NVD-CWE-Other
|
CVE-2006-3406
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278732
|
- |
|
smartsitecms
|
smartsitecms
|
PHP remote file inclusion vulnerability in SmartSiteCMS 1.0 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the root parameter in (1) comment.…
|
NVD-CWE-Other
|
CVE-2006-3421
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278733
|
- |
|
webex_communications
|
downloader_activexcontrol downloader_java
|
WebEx Downloader ActiveX Control and WebEx Downloader Java before 2.1.0.0 do not validate downloaded components, which allows remote attackers to execute arbitrary code via a website that activates t…
|
CWE-20
Improper Input Validation
|
CVE-2006-3423
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278734
|
- |
|
webex_communications
|
downloader_activexcontrol downloader_java
|
Upgrade to version 2.1.0.0.
|
CWE-20
Improper Input Validation
|
CVE-2006-3423
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278735
|
- |
|
lumension novell
|
patchlink_update_server zenworks
|
FastPatch for (a) PatchLink Update Server (PLUS) before 6.1 P1 and 6.2.x before 6.2 SR1 P1, and (b) Novell ZENworks 6.2 SR1 and earlier, does not require authentication for dagent/proxyreg.asp, which…
|
NVD-CWE-Other
|
CVE-2006-3425
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278736
|
- |
|
lumension novell
|
patchlink_update_server zenworks
|
Directory traversal vulnerability in (a) PatchLink Update Server (PLUS) before 6.1 P1 and 6.2.x before 6.2 SR1 P1 and (b) Novell ZENworks 6.2 SR1 and earlier allows remote attackers to overwrite arbi…
|
NVD-CWE-Other
|
CVE-2006-3426
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278737
|
- |
|
tigertom_scripts
|
ttcalc_script
|
Cross-site scripting (XSS) vulnerability in TigerTom TTCalc 1.0 allows remote attackers to inject arbitrary web script or HTML via the year parameter in (1) loan.php and (2) mortgage.php.
|
NVD-CWE-Other
|
CVE-2006-3428
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278738
|
- |
|
tigertom_scripts
|
ttcalc_script
|
Cross-site scripting (XSS) vulnerability in TigerTom TTCalc 1.0 allows remote attackers to inject arbitrary web script or HTML via the currency parameter in (1) loan.php and (2) mortgage.php. NOTE: …
|
NVD-CWE-Other
|
CVE-2006-3429
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278739
|
- |
|
lumension novell
|
patchlink_update_server zenworks
|
SQL injection vulnerability in checkprofile.asp in (1) PatchLink Update Server (PLUS) before 6.1 P1 and 6.2.x before 6.2 SR1 P1 and (2) Novell ZENworks 6.2 SR1 and earlier, allows remote attackers to…
|
CWE-89
SQL Injection
|
CVE-2006-3430
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278740
|
- |
|
microsoft
|
excel
|
Buffer overflow in certain Asian language versions of Microsoft Excel might allow user-assisted attackers to execute arbitrary code via a crafted STYLE record in a spreadsheet that triggers the overf…
|
NVD-CWE-Other
|
CVE-2006-3431
|
2018-10-19 01:47 |
2006-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|