|
278121
|
- |
|
reamday_enterprises
|
magic_downloads
|
settings.php in Reamday Enterprises Magic Downloads 1.1.3, when register_globals is enabled, allows remote attackers to modify program behavior, potentially bypassing authentication controls, via mod…
|
NVD-CWE-Other
|
CVE-2006-0722
|
2018-10-20 00:45 |
2006-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278122
|
- |
|
teca_scripts
|
teca_diary
|
SQL injection vulnerability in functions.php in Teca Diary PE 1.0 allows remote attackers to execute arbitrary SQL commands via the (1) yy, (2) mm, and (3) dd parameters.
|
NVD-CWE-Other
|
CVE-2006-0729
|
2018-10-20 00:45 |
2006-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278123
|
- |
|
sap
|
business_connector
|
WmRoot/adapter-index.dsp in SAP Business Connector Core Fix 7 and earlier allows remote attackers to conduct spoofing (phishing) attacks via an absolute URL in the url parameter, which loads the URL …
|
NVD-CWE-Other
|
CVE-2006-0731
|
2018-10-20 00:45 |
2006-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278124
|
- |
|
sap
|
business_connector
|
Directory traversal vulnerability in SAP Business Connector (BC) 4.6 and 4.7 allows remote attackers to read or delete arbitrary files via the fullName parameter to (1) sapbc/SAP/chopSAPLog.dsp or (2…
|
NVD-CWE-Other
|
CVE-2006-0732
|
2018-10-20 00:45 |
2006-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278125
|
- |
|
sap
|
business_connector
|
Apply patches (see SAP note 906401 and 908349).
|
NVD-CWE-Other
|
CVE-2006-0732
|
2018-10-20 00:45 |
2006-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278126
|
- |
|
fuzzymonkey m_blom
|
my_blog html-bbcode
|
Cross-site scripting (XSS) vulnerability in BBcode.pm in M. Blom HTML::BBCode 1.04 and earlier, as used in products such as My Blog before 1.65, allows remote attackers to inject arbitrary Javascript…
|
NVD-CWE-Other
|
CVE-2006-0735
|
2018-10-20 00:45 |
2006-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278127
|
- |
|
mozilla
|
firefox seamonkey thunderbird
|
Multiple integer overflows in Mozilla Firefox 1.5, Thunderbird 1.5 if Javascript is enabled in mail, and SeaMonkey before 1.0 might allow remote attackers to execute arbitrary code via the (1) Escape…
|
NVD-CWE-Other
|
CVE-2006-0297
|
2018-10-20 00:44 |
2006-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278128
|
- |
|
mozilla
|
firefox seamonkey
|
The XML parser in Mozilla Firefox before 1.5.0.1 and SeaMonkey before 1.0 allows remote attackers to cause a denial of service (crash) and possibly read sensitive data via unknown attack vectors that…
|
CWE-20
Improper Input Validation
|
CVE-2006-0298
|
2018-10-20 00:44 |
2006-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278129
|
- |
|
mozilla
|
firefox seamonkey thunderbird
|
The E4X implementation in Mozilla Firefox before 1.5.0.1, Thunderbird 1.5 if running Javascript in mail, and SeaMonkey before 1.0 exposes the internal "AnyName" object to external interfaces, which a…
|
NVD-CWE-Other
|
CVE-2006-0299
|
2018-10-20 00:44 |
2006-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278130
|
- |
|
gnu
|
tar
|
Buffer overflow in tar 1.14 through 1.15.90 allows user-assisted attackers to cause a denial of service (application crash) and possibly execute code via unspecified vectors involving PAX extended he…
|
NVD-CWE-Other
|
CVE-2006-0300
|
2018-10-20 00:44 |
2006-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|