|
344731
|
- |
|
zenphoto
|
zenphoto
|
Multiple cross-site scripting (XSS) vulnerabilities in zenphoto 1.0.1 beta and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) a parameter in i.php, and the (2) albu…
|
NVD-CWE-Other
|
CVE-2006-2187
|
2018-10-19 01:38 |
2006-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344732
|
- |
|
zenphoto
|
zenphoto
|
This vulnerability is addressed in the following product release:
zenphoto, zenphoto, 1.0.2 beta
|
NVD-CWE-Other
|
CVE-2006-2187
|
2018-10-19 01:38 |
2006-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344733
|
- |
|
cmscout
|
cmscout
|
Multiple cross-site scripting (XSS) vulnerabilities in CMScout 1.10 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the Body field of a private message (PM), (2) BBC…
|
NVD-CWE-Other
|
CVE-2006-2188
|
2018-10-19 01:38 |
2006-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344734
|
- |
|
cmscout
|
cmscout
|
This vulnerability is addressed in the following product release:
CMScout, CMScout, 1.21
|
NVD-CWE-Other
|
CVE-2006-2188
|
2018-10-19 01:38 |
2006-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344735
|
- |
|
servous
|
sblog
|
SQL injection vulnerability in search.php in Servous sBLOG 0.7.2 allows remote attackers to execute arbitrary SQL commands via the keyword parameter. NOTE: this issue can be used to trigger path dis…
|
NVD-CWE-Other
|
CVE-2006-2189
|
2018-10-19 01:38 |
2006-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344736
|
- |
|
openoffice sun
|
openoffice staroffice
|
OpenOffice.org (aka StarOffice) 1.1.x up to 1.1.5 and 2.0.x before 2.0.3 allows user-assisted attackers to conduct unauthorized activities via an OpenOffice document with a malicious BASIC macro, whi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-2198
|
2018-10-19 01:38 |
2006-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344737
|
- |
|
openoffice sun
|
openoffice staroffice
|
Unspecified vulnerability in Java Applets in OpenOffice.org 1.1.x (aka StarOffice) up to 1.1.5 and 2.0.x before 2.0.3 allows user-assisted attackers to escape the Java sandbox and conduct unauthorize…
|
NVD-CWE-noinfo
|
CVE-2006-2199
|
2018-10-19 01:38 |
2006-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344738
|
- |
|
invision_power_services
|
invision_gallery
|
SQL injection vulnerability in post.php in Invision Gallery 2.0.6 allows remote attackers to execute arbitrary SQL commands via the album parameter.
|
NVD-CWE-Other
|
CVE-2006-2202
|
2018-10-19 01:38 |
2006-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344739
|
- |
|
invision_power_services
|
invision_power_board
|
SQL injection vulnerability in the topic deletion functionality (post_delete function in func_mod.php) for Invision Power Board 2.1.5 allows remote authenticated moderators to execute arbitrary SQL c…
|
NVD-CWE-Other
|
CVE-2006-2204
|
2018-10-19 01:38 |
2006-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
344740
|
- |
|
321soft
|
php-gallery
|
Cross-site scripting (XSS) vulnerability in index.php in 321soft PhP-Gallery 0.9 allows remote attackers to inject arbitrary web script or HTML via the path parameter. NOTE: this issue might be resu…
|
NVD-CWE-Other
|
CVE-2006-2210
|
2018-10-19 01:38 |
2006-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|