|
279181
|
- |
|
mozilla
|
firefox seamonkey
|
Fixed in: Firefox 1.5.0.4
SeaMonkey 1.0.2
|
CWE-20
Improper Input Validation
|
CVE-2006-2782
|
2018-10-19 01:42 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279182
|
- |
|
mozilla
|
firefox thunderbird
|
Mozilla Firefox and Thunderbird before 1.5.0.4 strip the Unicode Byte-order-Mark (BOM) from a UTF-8 page before the page is passed to the parser, which allows remote attackers to conduct cross-site s…
|
CWE-79
Cross-site Scripting
|
CVE-2006-2783
|
2018-10-19 01:42 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279183
|
- |
|
mozilla
|
firefox thunderbird
|
Fixed in: Firefox 1.5.0.4
Thunderbird 1.5.0.4
SeaMonkey 1.0.2
|
CWE-79
Cross-site Scripting
|
CVE-2006-2783
|
2018-10-19 01:42 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279184
|
- |
|
mozilla
|
firefox
|
The PLUGINSPAGE functionality in Mozilla Firefox before 1.5.0.4 allows remote user-assisted attackers to execute privileged code by tricking a user into installing missing plugins and selecting the "…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-2784
|
2018-10-19 01:42 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279185
|
- |
|
mozilla
|
firefox
|
Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 1.5.0.4 allows user-assisted remote attackers to inject arbitrary web script or HTML by tricking a user into (1) performing a "View …
|
NVD-CWE-Other
|
CVE-2006-2785
|
2018-10-19 01:42 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279186
|
- |
|
mozilla
|
firefox thunderbird
|
HTTP response smuggling vulnerability in Mozilla Firefox and Thunderbird before 1.5.0.4, when used with certain proxy servers, allows remote attackers to cause Firefox to interpret certain responses …
|
NVD-CWE-Other
|
CVE-2006-2786
|
2018-10-19 01:42 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279187
|
- |
|
mozilla
|
firefox thunderbird
|
EvalInSandbox in Mozilla Firefox and Thunderbird before 1.5.0.4 allows remote attackers to gain privileges via javascript that calls the valueOf method on objects that were created outside of the san…
|
NVD-CWE-Other
|
CVE-2006-2787
|
2018-10-19 01:42 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279188
|
- |
|
phpfox
|
phpfox
|
phpFoX allows remote authenticated users to modify arbitrary accounts via a modified NATIO cookie value, possibly the phpfox_user parameter.
|
NVD-CWE-Other
|
CVE-2006-2631
|
2018-10-19 01:41 |
2006-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279189
|
- |
|
andrew_godwin
|
bytehoard
|
Cross-site scripting (XSS) vulnerability in Andrew Godwin ByteHoard 2.1 and earlier allows remote authenticated users to inject arbitrary web script or HTML via file descriptions.
|
NVD-CWE-Other
|
CVE-2006-2632
|
2018-10-19 01:41 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279190
|
- |
|
andrew_godwin
|
bytehoard
|
Absolute path traversal vulnerability in the copy action in index.php in Andrew Godwin ByteHoard 2.1 and earlier allows remote authenticated users to create or overwrite files in other users' directo…
|
NVD-CWE-Other
|
CVE-2006-2633
|
2018-10-19 01:41 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|