|
278281
|
- |
|
thewebforum
|
thewebforum
|
SQL injection vulnerability in login.php in TheWebForum (twf) 1.2.1 allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the username parameter (aka the u var…
|
NVD-CWE-Other
|
CVE-2006-0135
|
2018-10-20 00:42 |
2006-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278282
|
- |
|
phanatic_softwares
|
chimera_web_portal
|
Multiple cross-site scripting (XSS) vulnerabilities in the guestbook module in modules.php in Phanatic Softwares Chimera Web Portal System 0.2 allow remote attackers to inject arbitrary web script or…
|
NVD-CWE-Other
|
CVE-2006-0136
|
2018-10-20 00:42 |
2006-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278283
|
- |
|
phanatic_softwares
|
chimera_web_portal
|
SQL injection vulnerability in linkcategory.php in Phanatic Softwares Chimera Web Portal System 0.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2006-0137
|
2018-10-20 00:42 |
2006-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278284
|
- |
|
navboard
|
navboard
|
Cross-site scripting (XSS) vulnerability in post.php in NavBoard V16 Stable(2.6.0) and V17beta2 allows remote attackers to inject arbitrary web script or HTML via the (1) b, (2) textlarge, and (3) ur…
|
CWE-79
Cross-site Scripting
|
CVE-2006-0140
|
2018-10-20 00:42 |
2006-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278285
|
- |
|
apache2triad php
|
apache2triad pear
|
The proxy server feature in go-pear.php in PHP PEAR 0.2.2, as used in Apache2Triad, allows remote attackers to execute arbitrary PHP code by redirecting go-pear.php to a malicious proxy server that p…
|
CWE-94
Code Injection
|
CVE-2006-0144
|
2018-10-20 00:42 |
2006-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278286
|
- |
|
netbsd
|
netbsd
|
The kernfs_xread function in kernfs in NetBSD 1.6 through 2.1, and OpenBSD 3.8, does not properly validate file offsets against negative 32-bit values that occur as a result of truncation, which allo…
|
NVD-CWE-Other
|
CVE-2006-0145
|
2018-10-20 00:42 |
2006-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278287
|
- |
|
john_lim mantis moodle postnuke_software_foundation the_cacti_group
|
adodb mantis moodle postnuke cacti
|
Dynamic code evaluation vulnerability in tests/tmssql.php test script in ADOdb for PHP before 4.70, as used in multiple products including (1) Mantis, (2) PostNuke, (3) Moodle, (4) Cacti, (5) Xaraya,…
|
NVD-CWE-Other
|
CVE-2006-0147
|
2018-10-20 00:42 |
2006-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278288
|
- |
|
427bb
|
fourtwosevenbb
|
427BB 2.2 and 2.2.1 verifies authentication credentials based on the username, authenticated, and usertype cookies, which allows remote attackers to bypass authentication by using a valid username an…
|
NVD-CWE-Other
|
CVE-2006-0153
|
2018-10-20 00:42 |
2006-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278289
|
- |
|
427bb
|
fourtwosevenbb
|
SQL injection vulnerability in showthread.php in 427BB 2.2 and 2.2.1 allows remote attackers to execute arbitrary SQL commands via the ForumID parameter.
|
NVD-CWE-Other
|
CVE-2006-0154
|
2018-10-20 00:42 |
2006-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278290
|
- |
|
427bb
|
fourtwosevenbb
|
Cross-site scripting (XSS) vulnerability in posts.php in 427BB 2.2 and 2.2.1 allows remote attackers to inject arbitrary Javascript via a new message with a url bbcode tag containing a javascript URI.
|
NVD-CWE-Other
|
CVE-2006-0155
|
2018-10-20 00:42 |
2006-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|