|
278591
|
- |
|
wordpress
|
wordpress
|
WordPress 2.0.3 allows remote attackers to obtain the installation path via a direct request to various files, such as those in the (1) wp-admin, (2) wp-content, and (3) wp-includes directories, poss…
|
NVD-CWE-Other
|
CVE-2006-3390
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278592
|
- |
|
usermin webmin
|
usermin webmin
|
Webmin before 1.290 and Usermin before 1.220 calls the simplify_path function before decoding HTML, which allows remote attackers to read arbitrary files, as demonstrated using "..%01" sequences, whi…
|
NVD-CWE-Other
|
CVE-2006-3392
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278593
|
- |
|
miro_international
|
galleria
|
PHP remote file inclusion vulnerability in galleria.html.php in Galleria Mambo Module 1.0 and earlier for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolu…
|
CWE-94
Code Injection
|
CVE-2006-3396
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278594
|
- |
|
moniwiki
|
moniwiki
|
Cross-site scripting (XSS) vulnerability in wiki.php in MoniWiki before 1.1.2-20060702 allows remote attackers to inject arbitrary Javascript via the URL, which is reflected back in an error message,…
|
NVD-CWE-Other
|
CVE-2006-3399
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278595
|
- |
|
samba
|
samba
|
The smdb daemon (smbd/service.c) in Samba 3.0.1 through 3.0.22 allows remote attackers to cause a denial of service (memory consumption) via a large number of share connection requests.
|
NVD-CWE-Other
|
CVE-2006-3403
|
2018-10-19 01:47 |
2006-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278596
|
- |
|
qto
|
qtofilemanager
|
Cross-site scripting (XSS) vulnerability in qtofm.php in QTOFileManager 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) delete, (2) pathext, and (3) edit parameters.
|
NVD-CWE-Other
|
CVE-2006-3405
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278597
|
- |
|
qto
|
qtofilemanager
|
Directory traversal vulnerability in qtofm.php in QTOFileManager 1.0 allows remote attackers to modify arbitrary files via a .. (dot dot) sequence in the edit parameter.
|
NVD-CWE-Other
|
CVE-2006-3406
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278598
|
- |
|
smartsitecms
|
smartsitecms
|
PHP remote file inclusion vulnerability in SmartSiteCMS 1.0 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the root parameter in (1) comment.…
|
NVD-CWE-Other
|
CVE-2006-3421
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278599
|
- |
|
webex_communications
|
downloader_activexcontrol downloader_java
|
WebEx Downloader ActiveX Control and WebEx Downloader Java before 2.1.0.0 do not validate downloaded components, which allows remote attackers to execute arbitrary code via a website that activates t…
|
CWE-20
Improper Input Validation
|
CVE-2006-3423
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278600
|
- |
|
webex_communications
|
downloader_activexcontrol downloader_java
|
Upgrade to version 2.1.0.0.
|
CWE-20
Improper Input Validation
|
CVE-2006-3423
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|