|
278081
|
- |
|
orbicule
|
undercover
|
Orbicule Undercover allows attackers with physical or root access to disable the protection by using the chmod command to change the permissions of the /private/etc/uc.app/Contents/MacOS/uc file, whi…
|
NVD-CWE-Other
|
CVE-2006-0640
|
2018-10-20 00:45 |
2006-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278082
|
- |
|
orbicule
|
undercover
|
Orbicule Undercover uses a third-party web server to determine the IP address through which the computer is accessing the Internet, but does not document this third-party disclosure, which leads to a…
|
NVD-CWE-Other
|
CVE-2006-0641
|
2018-10-20 00:45 |
2006-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278083
|
- |
|
trend_micro
|
interscan_messaging_security_suite interscan_web_security_suite serverprotect
|
Trend Micro ServerProtect 5.58, and possibly InterScan Messaging Security Suite and InterScan Web Security Suite, have a default configuration setting of "Do not scan compressed files when Extracted …
|
NVD-CWE-Other
|
CVE-2006-0642
|
2018-10-20 00:45 |
2006-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278084
|
- |
|
wiredred
|
e_pop_web_conferencing
|
Cross-site scripting (XSS) vulnerability in WiredRed e/pop Web Conferencing 4.1.0.755 allows remote authenticated users to inject arbitrary web script or HTML via the topic name of a conference.
|
NVD-CWE-Other
|
CVE-2006-0643
|
2018-10-20 00:45 |
2006-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278085
|
- |
|
cpg-nuke
|
dragonfly_cms
|
Multiple directory traversal vulnerabilities in install.php in CPG-Nuke Dragonfly CMS (aka CPG Dragonfly CMS) 9.0.6.1 allow remote attackers to include and execute arbitrary local files via directory…
|
NVD-CWE-Other
|
CVE-2006-0644
|
2018-10-20 00:45 |
2006-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278086
|
- |
|
free_software_foundation_inc.
|
libtasn1
|
Tiny ASN.1 Library (libtasn1) before 0.2.18, as used by (1) GnuTLS 1.2.x before 1.2.10 and 1.3.x before 1.3.4, and (2) GNU Shishi, allows attackers to crash the DER decoder and possibly execute arbit…
|
NVD-CWE-Other
|
CVE-2006-0645
|
2018-10-20 00:45 |
2006-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278087
|
- |
|
php_icalendar
|
php_icalendar
|
Multiple directory traversal vulnerabilities in PHP iCalendar 2.0.1, 2.1, and 2.2 allow remote attackers to include arbitrary files via the (1) getdate and possibly other parameters used in the repla…
|
NVD-CWE-Other
|
CVE-2006-0648
|
2018-10-20 00:45 |
2006-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278088
|
- |
|
cpaint
|
cpaint
|
Cross-site scripting (XSS) vulnerability in cpaint2.inc.php in the CPAINT library before 2.0.3, as used in multiple scripts, allows remote attackers to inject arbitrary web script or HTML via the cpa…
|
NVD-CWE-Other
|
CVE-2006-0650
|
2018-10-20 00:45 |
2006-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278089
|
- |
|
hinton_design
|
phpht_topsites
|
Multiple SQL injection vulnerabilities in Hinton Design phpht Topsites 1.3 allow remote attackers to execute arbitrary SQL commands via multiple vectors including the username parameter.
|
NVD-CWE-Other
|
CVE-2006-0653
|
2018-10-20 00:45 |
2006-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278090
|
- |
|
hinton_design
|
phpht_topsites
|
check.php in Hinton Design phpht Topsites 1.3 does not validate passwords when using cookies, which allows remote attackers to bypass authentication via unspecified cookies.
|
NVD-CWE-Other
|
CVE-2006-0654
|
2018-10-20 00:45 |
2006-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|