|
279041
|
- |
|
mozilla
|
firefox thunderbird
|
Fixed in: Firefox 1.5.0.4
Thunderbird 1.5.0.4
SeaMonkey 1.0.2
|
CWE-79
Cross-site Scripting
|
CVE-2006-2783
|
2018-10-19 01:42 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279042
|
- |
|
mozilla
|
firefox
|
The PLUGINSPAGE functionality in Mozilla Firefox before 1.5.0.4 allows remote user-assisted attackers to execute privileged code by tricking a user into installing missing plugins and selecting the "…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-2784
|
2018-10-19 01:42 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279043
|
- |
|
mozilla
|
firefox
|
Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 1.5.0.4 allows user-assisted remote attackers to inject arbitrary web script or HTML by tricking a user into (1) performing a "View …
|
NVD-CWE-Other
|
CVE-2006-2785
|
2018-10-19 01:42 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279044
|
- |
|
mozilla
|
firefox thunderbird
|
HTTP response smuggling vulnerability in Mozilla Firefox and Thunderbird before 1.5.0.4, when used with certain proxy servers, allows remote attackers to cause Firefox to interpret certain responses …
|
NVD-CWE-Other
|
CVE-2006-2786
|
2018-10-19 01:42 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279045
|
- |
|
mozilla
|
firefox thunderbird
|
EvalInSandbox in Mozilla Firefox and Thunderbird before 1.5.0.4 allows remote attackers to gain privileges via javascript that calls the valueOf method on objects that were created outside of the san…
|
NVD-CWE-Other
|
CVE-2006-2787
|
2018-10-19 01:42 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279046
|
- |
|
phpfox
|
phpfox
|
phpFoX allows remote authenticated users to modify arbitrary accounts via a modified NATIO cookie value, possibly the phpfox_user parameter.
|
NVD-CWE-Other
|
CVE-2006-2631
|
2018-10-19 01:41 |
2006-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279047
|
- |
|
andrew_godwin
|
bytehoard
|
Cross-site scripting (XSS) vulnerability in Andrew Godwin ByteHoard 2.1 and earlier allows remote authenticated users to inject arbitrary web script or HTML via file descriptions.
|
NVD-CWE-Other
|
CVE-2006-2632
|
2018-10-19 01:41 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279048
|
- |
|
andrew_godwin
|
bytehoard
|
Absolute path traversal vulnerability in the copy action in index.php in Andrew Godwin ByteHoard 2.1 and earlier allows remote authenticated users to create or overwrite files in other users' directo…
|
NVD-CWE-Other
|
CVE-2006-2633
|
2018-10-19 01:41 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279049
|
- |
|
neocrome
|
seditio
|
Cross-site scripting (XSS) vulnerability in Neocrome Land Down Under (LDU) in Neocrome Seditio 102 allows remote attackers to inject arbitrary web script or HTML via an HTTP Referer field.
|
NVD-CWE-Other
|
CVE-2006-2634
|
2018-10-19 01:41 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279050
|
- |
|
tiki
|
tikiwiki_cms\/groupware
|
Multiple cross-site scripting (XSS) vulnerabilities in Tikiwiki (aka Tiki CMS/Groupware) 1.9.x allow remote attackers to inject arbitrary web script or HTML via malformed nested HTML tags such as "<s…
|
CWE-79
Cross-site Scripting
|
CVE-2006-2635
|
2018-10-19 01:41 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|