|
278831
|
- |
|
ishopcart
|
ishopcart
|
Multiple buffer overflows in the (1) vGetPost and (2) main functions in easy-scart.c through easy-scart6.c in iShopCart allow remote attackers to execute arbitrary code by sending a large amount of d…
|
NVD-CWE-Other
|
CVE-2006-2814
|
2018-10-19 01:43 |
2006-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278832
|
- |
|
two_shoes_mambo_factory
|
simpleboard
|
Successful exploitation requires that the product is used in Mambo or Joomla!.
|
CWE-79
Cross-site Scripting
|
CVE-2006-2815
|
2018-10-19 01:43 |
2006-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278833
|
- |
|
coolphp
|
coolphp_magazine
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in coolphp magazine allow remote attackers to inject arbitrary web script or HTML via the (1) op and (2) nick parameters, and possibly…
|
CWE-79
Cross-site Scripting
|
CVE-2006-2816
|
2018-10-19 01:43 |
2006-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278834
|
- |
|
two_shoes_mambo_factory
|
simpleboard
|
Multiple cross-site scripting (XSS) vulnerabilities in Two Shoes M-Factory (TSMF) SimpleBoard 1.1.0 Stable (aka com_simpleboard), as used in Mambo and Joomla!, allow remote attackers to inject arbitr…
|
CWE-79
Cross-site Scripting
|
CVE-2006-2815
|
2018-10-19 01:43 |
2006-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278835
|
- |
|
hotwebscripts
|
weblog_oggi
|
Cross-site scripting (XSS) vulnerability in HotWebScripts.com Weblog Oggi 1.0 allows remote attackers to inject arbitrary web script or HTML via a comment, possibly involving a javascript URI in the …
|
NVD-CWE-Other
|
CVE-2006-2820
|
2018-10-19 01:43 |
2006-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278836
|
- |
|
deltascripts
|
pro_publish
|
Multiple cross-site scripting (XSS) vulnerabilities in DeltaScripts Pro Publish allow remote attackers to inject arbitrary web script or HTML via the (1) artid parameter in art.php and the (2) catnam…
|
NVD-CWE-Other
|
CVE-2006-2821
|
2018-10-19 01:43 |
2006-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278837
|
- |
|
xfairguy
|
codeavalanche_freeforum
|
SQL injection vulnerability in admin/default.asp in Dusan Drobac CodeAvalanche FreeForum (aka CAForum) 1.0 allows remote attackers to execute arbitrary SQL commands via the password parameter.
|
NVD-CWE-Other
|
CVE-2006-2822
|
2018-10-19 01:43 |
2006-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278838
|
- |
|
a.shopkart
|
a.shopkart
|
Katrien De Graeve a.shopKart 2.0 (aka ashopKart20) stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct …
|
NVD-CWE-Other
|
CVE-2006-2823
|
2018-10-19 01:43 |
2006-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278839
|
- |
|
drupal
|
drupal
|
Drupal 4.6.x before 4.6.8 and 4.7.x before 4.7.2, when running under certain Apache configurations such as when FileInfo overrides are disabled within .htaccess, allows remote attackers to execute ar…
|
NVD-CWE-Other
|
CVE-2006-2831
|
2018-10-19 01:43 |
2006-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278840
|
- |
|
drupal
|
drupal
|
Cross-site scripting (XSS) vulnerability in the upload module (upload.module) in Drupal 4.6.x before 4.6.8 and 4.7.x before 4.7.2 allows remote attackers to inject arbitrary web script or HTML via th…
|
NVD-CWE-Other
|
CVE-2006-2832
|
2018-10-19 01:43 |
2006-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|