|
279021
|
- |
|
mafia_moblog
|
mafia_moblog
|
Mafia Moblog 0.6M1 and earlier allows remote attackers to obtain the installation path in an error message via a direct request to (1) big.php and (2) upgrade.php.
|
NVD-CWE-Other
|
CVE-2006-2978
|
2018-10-19 01:45 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279022
|
- |
|
integramod
|
integramod
|
Cross-site scripting (XSS) vulnerability in index.php in IntegraMOD 1.4.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the STYLE_URL parameter. NOTE: it is possible…
|
NVD-CWE-Other
|
CVE-2006-2984
|
2018-10-19 01:45 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279023
|
- |
|
integramod
|
integramod
|
SQL injection vulnerability in index.php in IntegraMOD 1.4.0 and earlier allows remote attackers to execute arbitrary SQL commands via double-encoded "'" characters in the STYLE_URL parameter.
|
NVD-CWE-Other
|
CVE-2006-2985
|
2018-10-19 01:45 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279024
|
- |
|
baby_katie_media
|
very_simple_car_lister very_simple_realty_lister
|
Multiple cross-site scripting (XSS) vulnerabilities in Baby Katie Media (a) very Simple Car Lister (vSCAL) 1.0 and (b) very simple Realty Lister (vsREAL) 1.0 allow remote attackers to inject arbitrar…
|
NVD-CWE-Other
|
CVE-2006-2986
|
2018-10-19 01:45 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279025
|
- |
|
chemical_dictionary
|
chemical_dictionary
|
Cross-site scripting (XSS) vulnerability in dictionary.php in Chemical Dictionary allows remote attackers to inject arbitrary web script or HTML via the keyword parameter in a browse action.
|
NVD-CWE-Other
|
CVE-2006-2988
|
2018-10-19 01:45 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279026
|
- |
|
ringlink
|
ringlink
|
Multiple cross-site scripting (XSS) vulnerabilities in Ringlink 3.2 allow remote attackers to inject arbitrary web script or HTML via a JavaScript URI in the SRC attribute of an IMG element, and poss…
|
NVD-CWE-Other
|
CVE-2006-2991
|
2018-10-19 01:45 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279027
|
- |
|
christian_becher
|
phazizguestbook
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in phazizGuestbook 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) email, (3) url fields, and …
|
CWE-79
Cross-site Scripting
|
CVE-2006-2994
|
2018-10-19 01:45 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279028
|
- |
|
zms_publishing
|
zms
|
Cross-site scripting (XSS) vulnerability in ZMS 2.9 and earlier, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the raw parameter in the search f…
|
NVD-CWE-Other
|
CVE-2006-2997
|
2018-10-19 01:45 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279029
|
- |
|
ifoto
|
ifoto
|
Cross-site scripting (XSS) vulnerability in iFoto 0.20, and possibly other versions before 0.50, allows remote attackers to inject arbitrary HTML or web script via a base64-encoded file parameter.
|
NVD-CWE-Other
|
CVE-2006-3006
|
2018-10-19 01:45 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279030
|
- |
|
eschew.net
|
phpbannerexchange
|
SQL injection vulnerability in phpBannerExchange before 2.0 Update 6 allows remote attackers to execute arbitrary SQL commands via the (1) login parameter in (a) client/stats.php and (b) admin/stats.…
|
NVD-CWE-Other
|
CVE-2006-3012
|
2018-10-19 01:45 |
2006-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|