|
278561
|
- |
|
vbzoom
|
vbzoom
|
Multiple SQL injection vulnerabilities in VBZooM 1.11 and earlier allow remote attackers to execute arbitrary SQL commands via the UserID parameter to (1) ignore-pm.php, (2) sendmail.php, (3) reply.p…
|
NVD-CWE-Other
|
CVE-2006-3691
|
2018-10-19 01:48 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278562
|
- |
|
rocks_clusters
|
rocks_clusters
|
Rocks Clusters 4.1 and earlier allows local users to gain privileges via commands enclosed with escaped backticks (\`) in an argument to the (1) mount-loop (mount-loop.c) or (2) umount-loop (umount-l…
|
NVD-CWE-Other
|
CVE-2006-3693
|
2018-10-19 01:48 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278563
|
- |
|
agnitum lavasoft novell
|
outpost_firewall lavasoft_personal_firewall client_firewall
|
Agnitum Outpost Firewall Pro 3.51.759.6511 (462), as used in (1) Lavasoft Personal Firewall 1.0.543.5722 (433) and (2) Novell BorderManager Novell Client Firewall 2.0, does not properly restrict user…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-3697
|
2018-10-19 01:48 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278564
|
- |
|
oracle
|
database_server
|
Unspecified vulnerability in the Core RDBMS component in Oracle Database 9.0.1.5 and 9.2.0.6 has unknown impact and attack vectors, aka Oracle Vuln# DB02.
|
NVD-CWE-noinfo
|
CVE-2006-3699
|
2018-10-19 01:48 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278565
|
- |
|
newsphp
|
newsphp
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in NewsPHP 2006 PRO allow remote attackers to inject arbitrary web script or HTML via the (1) words, (2) id, (3) cat_id, and (4) tim p…
|
NVD-CWE-Other
|
CVE-2006-3358
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278566
|
- |
|
newsphp
|
newsphp
|
Multiple SQL injection vulnerabilities in index.php in NewsPHP 2006 PRO allow remote attackers to inject arbitrary web script or HTML via the (1) words, (2) id, (3) topmenuitem, and (4) cat_id parame…
|
NVD-CWE-Other
|
CVE-2006-3359
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278567
|
- |
|
geeklog toenda_software_development
|
geeklog toendacms
|
Unrestricted file upload vulnerability in connectors/php/connector.php in FCKeditor mcpuk file manager, as used in (1) Geeklog 1.4.0 through 1.4.0sr3, (2) toendaCMS 1.0.0 Shizouka Stable and earlier,…
|
NVD-CWE-Other
|
CVE-2006-3362
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278568
|
- |
|
geeklog toenda_software_development
|
geeklog toendacms
|
Upgrade to Geeklog version 1.4.0sr4 :
http://www.geeklog.net/filemgmt/index.php?id=727
|
NVD-CWE-Other
|
CVE-2006-3362
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278569
|
- |
|
xoops
|
xoops_glossaire_module
|
PHP remote file inclusion vulnerability in index.php in the Glossaire module 1.7 for Xoops allows remote attackers to execute arbitrary PHP code via a URL in the pa parameter.
|
NVD-CWE-Other
|
CVE-2006-3363
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278570
|
- |
|
f-art_agency
|
blog_cms
|
SQL injection vulnerability in index.php in the NP_SEO plugin in BLOG:CMS before 4.1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2006-3364
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|