|
279371
|
- |
|
dschat
|
dschat
|
Cross-site scripting (XSS) vulnerability in DSChat 1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the chatbox, probably involving the ctext parameter to send.php.
|
NVD-CWE-Other
|
CVE-2006-2605
|
2018-10-19 01:40 |
2006-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279372
|
- |
|
chatty
|
chatty
|
Cross-site scripting (XSS) vulnerability in Chatty, possibly 1.0.2 and other versions, allows remote attackers to inject arbitrary web script or HTML via the username.
|
NVD-CWE-Other
|
CVE-2006-2606
|
2018-10-19 01:40 |
2006-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279373
|
- |
|
paul_vixie
|
vixie_cron
|
do_command.c in Vixie cron (vixie-cron) 4.1 does not check the return code of a setuid call, which might allow local users to gain root privileges if setuid fails in cases such as PAM failures or res…
|
NVD-CWE-Other
|
CVE-2006-2607
|
2018-10-19 01:40 |
2006-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279374
|
- |
|
artmedic_webdesign
|
artmedic_newsletter
|
artmedic newsletter 4.1 and possibly other versions, when register_globals is enabled, allows remote attackers to modify arbitrary files and execute arbitrary PHP code via the logfile parameter in a …
|
NVD-CWE-Other
|
CVE-2006-2608
|
2018-10-19 01:40 |
2006-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279375
|
- |
|
spiffyjr
|
phpraid
|
Cross-site scripting (XSS) vulnerability in view.php in phpRaid 2.9.5 allows remote attackers to inject arbitrary web script or HTML via the (1) URL query string and the (2) Sort parameter.
|
NVD-CWE-Other
|
CVE-2006-2610
|
2018-10-19 01:40 |
2006-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279376
|
- |
|
novell
|
client
|
Novell Client for Windows 4.8 and 4.9 does not restrict access to the clipboard contents while a machine is locked, which allows users with physical access to read the current clipboard contents by p…
|
NVD-CWE-Other
|
CVE-2006-2612
|
2018-10-19 01:40 |
2006-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279377
|
- |
|
mozilla netscape
|
firefox mozilla_suite navigator
|
Mozilla Suite 1.7.13, Mozilla Firefox 1.5.0.3 and possibly other versions before before 1.8.0, and Netscape 7.2 and 8.1, and possibly other versions and products, allows remote user-assisted attacker…
|
CWE-200
Information Exposure
|
CVE-2006-2613
|
2018-10-19 01:40 |
2006-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279378
|
- |
|
russcom_network
|
russcom.ping
|
ping.php in Russcom.Ping allows remote attackers to execute arbitrary commands via shell metacharacters in the domain parameter.
|
NVD-CWE-Other
|
CVE-2006-2615
|
2018-10-19 01:40 |
2006-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279379
|
- |
|
alstrasoft
|
webhost_directory
|
SQL injection vulnerability in the search script in (1) AlstraSoft Web Host Directory 1.2, aka (2) HyperStop WebHost Directory 1.2, allows remote attackers to execute arbitrary SQL commands via the u…
|
NVD-CWE-Other
|
CVE-2006-2616
|
2018-10-19 01:40 |
2006-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279380
|
- |
|
alstrasoft
|
webhost_directory
|
(1) AlstraSoft Web Host Directory 1.2, aka (2) HyperStop WebHost Directory 1.2, allows remote attackers to obtain the installation path via an invalid entry in the Username field on the login page, w…
|
NVD-CWE-Other
|
CVE-2006-2617
|
2018-10-19 01:40 |
2006-05-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|