|
345331
|
- |
|
netious_cms
|
netious_cms
|
Netious CMS 0.4 initializes session IDs based on the client IP address, which allows remote attackers to gain access to the administration section when originating from the same IP address as the adm…
|
NVD-CWE-Other
|
CVE-2006-4048
|
2017-07-20 10:32 |
2006-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345332
|
- |
|
sun
|
ray_server_software
|
Unspecified vulnerability in the utxconfig utility in Sun Ray Server Software 3.x allows local users to create or overwrite arbitrary files via unknown attack vectors.
|
NVD-CWE-Other
|
CVE-2006-4049
|
2017-07-20 10:32 |
2006-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345333
|
- |
|
the_address_book the_address_book_reloaded
|
the_address_book the_address_book_reloaded
|
Multiple SQL injection vulnerabilities in the authentication process in katzlbt (a) The Address Book 1.04e and earlier and (b) The Address Book Reloaded before 2.0-rc4 allow remote attackers to execu…
|
NVD-CWE-Other
|
CVE-2006-4056
|
2017-07-20 10:32 |
2006-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345334
|
- |
|
cakefoundation
|
cakephp
|
Cross-site scripting (XSS) vulnerability in cake/libs/error.php in CakePHP before 1.1.7.3363 allows remote attackers to inject arbitrary web script or HTML via the URL, which is reflected back in a 4…
|
CWE-79
Cross-site Scripting
|
CVE-2006-4067
|
2017-07-20 10:32 |
2006-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345335
|
- |
|
mywebland
|
myevent
|
PHP remote file inclusion vulnerability in viewevent.php in myWebland myEvent 1.x allows remote attackers to execute arbitrary PHP code via a URL in the myevent_path parameter, a different vector tha…
|
NVD-CWE-Other
|
CVE-2006-4083
|
2017-07-20 10:32 |
2006-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345336
|
- |
|
olaf_noehring
|
the_search_engine_project
|
PHP remote file inclusion vulnerability in Olaf Noehring The Search Engine Project (TSEP) 0.942 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the tsep_config[absPath]…
|
NVD-CWE-Other
|
CVE-2006-4085
|
2017-07-20 10:32 |
2006-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345337
|
- |
|
mojoscripts
|
mojogallery
|
Cross-site scripting (XSS) vulnerability in admin.cgi in mojoscripts.com mojoGallery allows remote attackers to inject arbitrary web script or HTML via the username parameter. NOTE: the provenance o…
|
NVD-CWE-Other
|
CVE-2006-4087
|
2017-07-20 10:32 |
2006-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345338
|
- |
|
mojoscripts
|
mojogallery
|
Cross-site scripting (XSS) vulnerability in admin.cgi in mojoscripts.com mojoGallery allows remote attackers to inject arbitrary web script or HTML via "password input."
|
NVD-CWE-Other
|
CVE-2006-4104
|
2017-07-20 10:32 |
2006-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345339
|
- |
|
drupal
|
job_search
|
SQL injection vulnerability in the Job Search module (job.module) 4.6 before revision 1.3.2.1 in Drupal allows remote attackers to execute arbitrary SQL commands via a job or resume search.
|
NVD-CWE-Other
|
CVE-2006-4107
|
2017-07-20 10:32 |
2006-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345340
|
- |
|
drupal
|
bibliography_module
|
SQL injection vulnerability in Bibliography (biblio.module) 4.6 before revision 1.1.1.1.4.11 and 4.7 before revision 1.13.2.5 for Drupal allows remote attackers to execute arbitrary SQL commands via …
|
NVD-CWE-Other
|
CVE-2006-4108
|
2017-07-20 10:32 |
2006-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|