|
278861
|
- |
|
aspscriptz
|
aspscriptz_guest_book
|
Multiple cross-site scripting (XSS) vulnerabilities submit.asp in ASPScriptz Guest Book 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) GBOOK_UNAME, (2) GBOO…
|
NVD-CWE-Other
|
CVE-2006-2882
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278862
|
- |
|
kke_info_media
|
kmita_faq
|
Cross-site scripting (XSS) vulnerability in search.php in Kmita FAQ 1.0 allows remote attackers to inject arbitrary web script or HTML via the q parameter.
|
NVD-CWE-Other
|
CVE-2006-2883
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278863
|
- |
|
kke_info_media
|
kmita_faq
|
SQL injection vulnerability in index.php in Kmita FAQ 1.0 allows remote attackers to execute arbitrary SQL commands via the catid parameter.
|
NVD-CWE-Other
|
CVE-2006-2884
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278864
|
- |
|
aspburst
|
mynewsletter
|
Multiple SQL injection vulnerabilities in myNewsletter 1.1.2 and earlier allow remote attackers to execute arbitrary SQL commands via the UserName parameter in (1) validatelogin.asp or (2) adminlogin…
|
NVD-CWE-Other
|
CVE-2006-2887
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278865
|
- |
|
pixelpost
|
pixelpost
|
Multiple SQL injection vulnerabilities in index.php in Pixelpost 1-5rc1-2 and earlier allow remote attackers to execute arbitrary SQL commands, and leverage them to gain administrator privileges, via…
|
NVD-CWE-Other
|
CVE-2006-2889
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278866
|
- |
|
pixelpost
|
pixelpost
|
Pixelpost 1-5rc1-2 and earlier, when register_globals is enabled, allows remote attackers to gain administrator privileges and conduct other attacks by setting the _SESSION["pixelpost_admin"] paramet…
|
NVD-CWE-Other
|
CVE-2006-2890
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278867
|
- |
|
pixelpost
|
pixelpost
|
Cross-site scripting (XSS) vulnerability in admin/index.php for Pixelpost 1-5rc1-2 and earlier allows remote attackers to inject arbitrary HTML or web script via the loginmessage parameter.
|
NVD-CWE-Other
|
CVE-2006-2891
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278868
|
- |
|
gantty
|
gantty
|
Cross-site scripting (XSS) vulnerability in index.php in GANTTy 1.0.3 allows remote attackers to inject arbitrary HTML and web script via the message parameter in a login action.
|
NVD-CWE-Other
|
CVE-2006-2892
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278869
|
- |
|
gantty
|
gantty
|
index.php in GANTTy 1.0.3 allows remote attackers to obtain the full path of the web server via an invalid lang parameter in an authenticate action.
|
NVD-CWE-Other
|
CVE-2006-2893
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278870
|
- |
|
mozilla netscape
|
firefox mozilla_suite seamonkey navigator
|
Mozilla Firefox 1.5.0.4, 2.0.x before 2.0.0.8, Mozilla Suite 1.7.13, Mozilla SeaMonkey 1.0.2 and other versions before 1.1.5, and Netscape 8.1 and earlier allow user-assisted remote attackers to read…
|
CWE-20
Improper Input Validation
|
CVE-2006-2894
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|