|
299591
|
- |
|
atmail
|
atmail_webadmin
|
Cross-site scripting (XSS) vulnerability in the Webadmin in @Mail before 4.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving "unescaped data in the da…
|
NVD-CWE-Other
|
CVE-2006-6704
|
2017-07-29 10:29 |
2006-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299592
|
- |
|
atmail
|
atmail_webadmin
|
This vulnerability is addressed in the following product release:
@Mail, @Mail Webadmin, 4.6
|
NVD-CWE-Other
|
CVE-2006-6704
|
2017-07-29 10:29 |
2006-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299593
|
- |
|
mginternet
|
property_site_manager
|
Cross-site scripting (XSS) vulnerability in listings.asp in MGinternet Property Site Manager allows remote attackers to inject arbitrary web script or HTML via the s parameter.
|
NVD-CWE-Other
|
CVE-2006-6708
|
2017-07-29 10:29 |
2006-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299594
|
- |
|
mginternet
|
property_site_manager
|
Multiple SQL injection vulnerabilities in MGinternet Property Site Manager allow remote attackers to execute arbitrary SQL commands via the (1) p parameter to (a) detail.asp; the (2) l, (3) typ, or (…
|
NVD-CWE-Other
|
CVE-2006-6709
|
2017-07-29 10:29 |
2006-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299595
|
- |
|
a-blog
|
a-blog
|
Cross-site scripting (XSS) vulnerability in a-blog 1.51 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2006-6729
|
2017-07-29 10:29 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299596
|
- |
|
a-blog
|
a-blog
|
This vulnerability is addressed in the following product release:
A-blog, A-blog, 1.52
|
CWE-79
Cross-site Scripting
|
CVE-2006-6729
|
2017-07-29 10:29 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299597
|
- |
|
phpprofiles
|
phpprofiles
|
phpProfiles before 2.1.1 uses world writable permissions for certain profile files and directories, which allows local users to modify or delete files, related to (1) users/include/do_makeprofile.inc…
|
NVD-CWE-Other
|
CVE-2006-6743
|
2017-07-29 10:29 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299598
|
- |
|
dxmsoft
|
xm_easy_personal_ftp_server
|
Format string vulnerability in XM Easy Personal FTP Server 5.2.1 allows remote attackers to cause a denial of service (application crash) via format string specifiers in the USER command or certain o…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2006-6751
|
2017-07-29 10:29 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299599
|
- |
|
cwm-design
|
cwmexplorer
|
Multiple SQL injection vulnerabilities in cwmExplorer 1.1.0 and earlier allow remote attackers to execute arbitrary SQL commands via unspecified vectors. NOTE: The provenance of this information is …
|
NVD-CWE-Other
|
CVE-2006-6766
|
2017-07-29 10:29 |
2006-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299600
|
- |
|
wordpress
|
wordpress
|
Cross-site scripting (XSS) vulnerability in wp-admin/templates.php in WordPress 2.0.5 allows remote attackers to inject arbitrary web script or HTML via the file parameter. NOTE: some sources have r…
|
NVD-CWE-Other
|
CVE-2006-6808
|
2017-07-29 10:29 |
2006-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|