|
278831
|
- |
|
fatwire
|
fatwire_content_server
|
FatWire Content Server 5.5.0 allows remote attackers to bypass access restrictions and obtain administrative privileges via unspecified attack vectors in the authentication process.
|
NVD-CWE-Other
|
CVE-2006-3679
|
2018-10-19 01:48 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278832
|
- |
|
photocycle
|
photocycle
|
Cross-site scripting (XSS) vulnerability in photocycle in Photocycle 1.0 allows remote attackers to inject arbitrary web script or HTML via the phpage parameter.
|
NVD-CWE-Other
|
CVE-2006-3680
|
2018-10-19 01:48 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278833
|
- |
|
flipper_poll
|
flipper_poll
|
PHP remote file inclusion vulnerability in poll.php in Flipper Poll 1.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter.
|
NVD-CWE-Other
|
CVE-2006-3683
|
2018-10-19 01:48 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278834
|
- |
|
softcomplex
|
php_event_calendar
|
PHP remote file inclusion vulnerability in calendar.php in SoftComplex PHP Event Calendar 1.4 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_calendar parameter, which …
|
NVD-CWE-Other
|
CVE-2006-3684
|
2018-10-19 01:48 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278835
|
- |
|
francisco_charrua
|
photo-gallery
|
SQL injection vulnerability in Room.php in Francisco Charrua Photo-Gallery 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2006-3688
|
2018-10-19 01:48 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278836
|
- |
|
minibb
|
forum
|
Multiple PHP remote file inclusion vulnerabilities in MiniBB Forum 1.5a and earlier allow remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter to (1) components/com…
|
NVD-CWE-Other
|
CVE-2006-3690
|
2018-10-19 01:48 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278837
|
- |
|
vbzoom
|
vbzoom
|
Multiple SQL injection vulnerabilities in VBZooM 1.11 and earlier allow remote attackers to execute arbitrary SQL commands via the UserID parameter to (1) ignore-pm.php, (2) sendmail.php, (3) reply.p…
|
NVD-CWE-Other
|
CVE-2006-3691
|
2018-10-19 01:48 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278838
|
- |
|
rocks_clusters
|
rocks_clusters
|
Rocks Clusters 4.1 and earlier allows local users to gain privileges via commands enclosed with escaped backticks (\`) in an argument to the (1) mount-loop (mount-loop.c) or (2) umount-loop (umount-l…
|
NVD-CWE-Other
|
CVE-2006-3693
|
2018-10-19 01:48 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278839
|
- |
|
agnitum lavasoft novell
|
outpost_firewall lavasoft_personal_firewall client_firewall
|
Agnitum Outpost Firewall Pro 3.51.759.6511 (462), as used in (1) Lavasoft Personal Firewall 1.0.543.5722 (433) and (2) Novell BorderManager Novell Client Firewall 2.0, does not properly restrict user…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-3697
|
2018-10-19 01:48 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278840
|
- |
|
oracle
|
database_server
|
Unspecified vulnerability in the Core RDBMS component in Oracle Database 9.0.1.5 and 9.2.0.6 has unknown impact and attack vectors, aka Oracle Vuln# DB02.
|
NVD-CWE-noinfo
|
CVE-2006-3699
|
2018-10-19 01:48 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|