|
345551
|
- |
|
tugzip
|
tugzip
|
Multiple directory traversal vulnerabilities in Christian Kindahl TUGZip 3.4.0.0, 3.3.0.0, and 3.1.0.2 allow user-assisted attackers to create files in arbitrary directories via a .. (dot dot) in an …
|
NVD-CWE-Other
|
CVE-2006-1715
|
2018-10-19 01:34 |
2006-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345552
|
- |
|
mybulletinboard
|
mybulletinboard
|
Cross-site scripting (XSS) vulnerability in inc/functions_post.php in MyBB (aka MyBulletinBoard) 1.10 allows remote attackers to inject arbitrary web script or HTML via a JavaScript event in a BBCode…
|
NVD-CWE-Other
|
CVE-2006-1716
|
2018-10-19 01:34 |
2006-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345553
|
- |
|
mybulletinboard
|
mybulletinboard
|
Successful exploitation requires that unauthenticated users are allowed to post new threads (not the default setting).
|
NVD-CWE-Other
|
CVE-2006-1716
|
2018-10-19 01:34 |
2006-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345554
|
- |
|
mybulletinboard
|
mybulletinboard
|
Cross-site scripting (XSS) vulnerability in newthread.php in MyBB (aka MyBulletinBoard) 1.10, when configured to permit new threads by unregistered users, allows remote attackers to inject arbitrary …
|
NVD-CWE-Other
|
CVE-2006-1717
|
2018-10-19 01:34 |
2006-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345555
|
- |
|
mybulletinboard
|
mybulletinboard
|
Successful exploitation requires that unauthenticated users are allowed to post new threads (not the default setting).
|
NVD-CWE-Other
|
CVE-2006-1717
|
2018-10-19 01:34 |
2006-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345556
|
- |
|
clever_copy
|
clever_copy
|
Magus Perde Clever Copy 3.0 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to view the database username and password via …
|
NVD-CWE-Other
|
CVE-2006-1718
|
2018-10-19 01:34 |
2006-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345557
|
- |
|
microsoft
|
ie
|
Internet Explorer 6 allows remote attackers to cause a denial of service (application crash) via any scrollbar Cascading Style Sheets (CSS) property.
|
NVD-CWE-Other
|
CVE-2006-1719
|
2018-10-19 01:34 |
2006-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345558
|
- |
|
arabless
|
saphplesson
|
Cross-site scripting (XSS) vulnerability in search.php in SaphpLesson 3.0 allows remote attackers to inject arbitrary web script or HTML via the Word parameter. NOTE: it is possible that this issue …
|
NVD-CWE-Other
|
CVE-2006-1720
|
2018-10-19 01:34 |
2006-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345559
|
- |
|
cyrus
|
sasl
|
digestmd5.c in the CMU Cyrus Simple Authentication and Security Layer (SASL) library 2.1.18, and possibly other versions before 2.1.21, allows remote unauthenticated attackers to cause a denial of se…
|
CWE-20
Improper Input Validation
|
CVE-2006-1721
|
2018-10-19 01:34 |
2006-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
345560
|
- |
|
mozilla
|
firefox seamonkey thunderbird
|
Unspecified vulnerability in Firefox and Thunderbird before 1.5.0.2, and SeaMonkey before 1.0.1, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via u…
|
NVD-CWE-Other
|
CVE-2006-1723
|
2018-10-19 01:34 |
2006-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|