|
278851
|
- |
|
efone
|
efone
|
Efone 20000723 stores config.inc under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information.
|
NVD-CWE-Other
|
CVE-2006-3368
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278852
|
- |
|
iduprey
|
kamikaze-qscm
|
Kamikaze-QSCM 0.1 stores config.inc under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information, including the database configuration.
|
NVD-CWE-Other
|
CVE-2006-3369
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278853
|
- |
|
bb-news
|
blueboy
|
Blueboy 1.0.3 stores bb_news_config.inc under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information, including the database configurati…
|
NVD-CWE-Other
|
CVE-2006-3370
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278854
|
- |
|
eupla
|
foros
|
Eupla Foros 1.0 stores the inc/config.inc file under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information, including the database conf…
|
NVD-CWE-Other
|
CVE-2006-3371
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278855
|
- |
|
hobbit_monitor
|
hobbit_monitor
|
Unspecified vulnerability in the client/bin/logfetch script in Hobbit 4.2-beta allows local users to read arbitrary files, related to logfetch running as setuid root.
|
NVD-CWE-Other
|
CVE-2006-3373
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278856
|
- |
|
randshop
|
randshop
|
PHP remote file inclusion vulnerability in index.php in Randshop 1.2 and earlier, including 0.9.3, allows remote attackers to execute arbitrary PHP code via a URL in the incl parameter.
|
NVD-CWE-Other
|
CVE-2006-3374
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278857
|
- |
|
wvware
|
libwmf wv2
|
Integer overflow in player.c in libwmf 0.2.8.4, as used in multiple products including (1) wv, (2) abiword, (3) freetype, (4) gimp, (5) libgsf, and (6) imagemagick allows remote attackers to execute …
|
NVD-CWE-Other
|
CVE-2006-3376
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278858
|
- |
|
jmb_software
|
autorank
|
Cross-site scripting (XSS) vulnerability in JMB Software AutoRank PHP 3.02 and earlier, and AutoRank Pro 5.01 and earlier, allows remote attackers to inject arbitrary web script or HTML via the (1) K…
|
NVD-CWE-Other
|
CVE-2006-3377
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278859
|
- |
|
sturgeon_upload
|
sturgeon_upload
|
SturGeoN Upload allows remote attackers to execute arbitrary PHP code by uploading a file with a .php extension, then directly accessing the file. NOTE: It is uncertain whether this is a vulnerabili…
|
NVD-CWE-Other
|
CVE-2006-3381
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278860
|
- |
|
mads
|
mads
|
Cross-site scripting (XSS) vulnerability in search.php in mAds 1.0 allows remote attackers to inject arbitrary web script or HTML via the "search string".
|
NVD-CWE-Other
|
CVE-2006-3382
|
2018-10-19 01:47 |
2006-07-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|