|
278791
|
- |
|
phpmyfactures
|
phpmyfactures
|
PhpMyFactures 1.0, and possibly 1.2 and earlier, allows remote attackers to obtain the installation path via a direct request to (1) /verif.php, (2) /inc/footer.php, and (3) /remises/ajouter_remise.p…
|
NVD-CWE-Other
|
CVE-2006-3091
|
2018-10-19 01:45 |
2006-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278792
|
- |
|
phpmyfactures
|
phpmyfactures
|
PhpMyFactures 1.2 and earlier allows remote attackers to bypass authentication and modify data via direct requests with modified parameters to (1) /tva/ajouter_tva.php, (2) /remises/ajouter_remise.ph…
|
NVD-CWE-Other
|
CVE-2006-3092
|
2018-10-19 01:45 |
2006-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278793
|
- |
|
phpmyfactures
|
phpmyfactures
|
Multiple cross-site scripting (XSS) vulnerabilities in PhpMyFactures 1.0, and possibly 1.2 and earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) prefixe_dossier param…
|
NVD-CWE-Other
|
CVE-2006-3089
|
2018-10-19 01:45 |
2006-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278794
|
- |
|
phpmyfactures
|
phpmyfactures
|
Multiple SQL injection vulnerabilities in PhpMyFactures 1.0, and possibly 1.2 and earlier, with magic_quotes_gpc disabled, allow remote attackers to execute arbitrary SQL commands via the (1) id_pays…
|
NVD-CWE-Other
|
CVE-2006-3090
|
2018-10-19 01:45 |
2006-06-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278795
|
- |
|
hp
|
hp-ux
|
Unspecified vulnerability in Support Tools Manager (xstm, cstm, and stm) on HP-UX B.11.11 and B.11.23 allows local users to cause an unspecified denial of service via unknown vectors.
|
NVD-CWE-Other
|
CVE-2006-3097
|
2018-10-19 01:45 |
2006-06-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278796
|
- |
|
hp
|
hp-ux
|
This vulnerability only affects HP-UX running Support Tools Manager (xstm, cstm, stm).
|
NVD-CWE-Other
|
CVE-2006-3097
|
2018-10-19 01:45 |
2006-06-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278797
|
- |
|
cisco
|
secure_access_control_server
|
Cross-site scripting (XSS) vulnerability in LogonProxy.cgi in Cisco Secure ACS for UNIX 2.3 allows remote attackers to inject arbitrary web script or HTML via the (1) error, (2) SSL, and (3) Ok param…
|
NVD-CWE-Other
|
CVE-2006-3101
|
2018-10-19 01:45 |
2006-06-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278798
|
- |
|
bitweaver
|
bitweaver
|
Race condition in articles/BitArticle.php in Bitweaver 1.3, when run on Apache with the mod_mime extension, allows remote attackers to execute arbitrary PHP code by uploading arbitrary files with dou…
|
NVD-CWE-Other
|
CVE-2006-3102
|
2018-10-19 01:45 |
2006-06-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278799
|
- |
|
bitweaver
|
bitweaver
|
Cross-site scripting (XSS) vulnerability in Bitweaver 1.3 allows remote attackers to inject arbitrary web script or HTML via the (1) error parameter in users/login.php and the (2) feedback parameter …
|
NVD-CWE-Other
|
CVE-2006-3103
|
2018-10-19 01:45 |
2006-06-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278800
|
- |
|
bitweaver
|
bitweaver
|
users/index.php in Bitweaver 1.3 allows remote attackers to obtain sensitive information via an invalid sort_mode parameter, which reveals the installation path and database information in the result…
|
NVD-CWE-Other
|
CVE-2006-3104
|
2018-10-19 01:45 |
2006-06-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|