|
278871
|
- |
|
funkboard
|
funkboard
|
profile.php in FunkBoard CF0.71 allows remote attackers to change arbitrary passwords via a modified uid hidden form field in an Edit Profile action.
|
NVD-CWE-Other
|
CVE-2006-2896
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278872
|
- |
|
digium
|
asterisk
|
The IAX2 channel driver (chan_iax2) for Asterisk 1.2.x before 1.2.9 and 1.0.x before 1.0.11 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via truncated IAX 2…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2006-2898
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278873
|
- |
|
digium
|
asterisk
|
This vulnerability is addressed in the following product releases:
Asterisk, Asterisk, 1.2.9
Asterisk, Asterisk, 1.0.11
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2006-2898
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278874
|
- |
|
estsoft
|
internetdisk
|
Unspecified vulnerability in ESTsoft InternetDISK versions before 2006/04/20 allows remote authenticated users to execute arbitrary code, possibly by uploading a file with multiple extensions into th…
|
NVD-CWE-Other
|
CVE-2006-2899
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278875
|
- |
|
estsoft
|
internetdisk
|
This vulnerability is addressed in the following product release:
ESTsoft, InternetDISK, (version released 2006.04.20)
|
NVD-CWE-Other
|
CVE-2006-2899
|
2018-10-19 01:43 |
2006-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278876
|
- |
|
d-link
|
dwl-2100ap
|
The web server for D-Link Wireless Access-Point (DWL-2100ap) firmware 2.10na and earlier allows remote attackers to obtain sensitive system information via a request to an arbitrary .cfg file, which …
|
NVD-CWE-Other
|
CVE-2006-2901
|
2018-10-19 01:43 |
2006-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278877
|
- |
|
particle_soft
|
particle_links
|
Directory traversal vulnerability in Particle Links 1.2.2 might allow remote attackers to access arbitrary files via ".." sequences in an HTTP request. NOTE: it is not clear whether this issue is le…
|
NVD-CWE-Other
|
CVE-2006-2902
|
2018-10-19 01:43 |
2006-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278878
|
- |
|
particle_soft
|
particle_links
|
Cross-site scripting (XSS) vulnerability in admin.php in Particle Links 1.2.2 allows remote attackers to inject arbitrary web script or HTML via the username parameter.
|
NVD-CWE-Other
|
CVE-2006-2903
|
2018-10-19 01:43 |
2006-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278879
|
- |
|
particle_soft
|
particle_links
|
SQL injection vulnerability in index.php in Partial Links 1.2.2 allows remote attackers to execute arbitrary SQL commands via the topic parameter.
|
NVD-CWE-Other
|
CVE-2006-2904
|
2018-10-19 01:43 |
2006-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278880
|
- |
|
particle_soft
|
particle_links
|
Partial Links 1.2.2 allows remote attackers to obtain sensitive information via a direct request to (1) page_footer.php and (2) page_header.php, which displays the path in an error message.
|
NVD-CWE-Other
|
CVE-2006-2905
|
2018-10-19 01:43 |
2006-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|