|
299991
|
- |
|
db-central
|
cms enterprise_cms
|
Cross-site scripting (XSS) vulnerability in the search functionality in db-central (dbc) Enterprise CMS and db-central CMS allows remote attackers to inject arbitrary web script or HTML via the needl…
|
NVD-CWE-Other
|
CVE-2006-5430
|
2017-07-20 10:33 |
2006-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299992
|
- |
|
comdev
|
comdev_forum
|
PHP remote file inclusion vulnerability in adminfoot.php in Comdev Forum 4.1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the path[docroot] pa…
|
NVD-CWE-Other
|
CVE-2006-5438
|
2017-07-20 10:33 |
2006-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299993
|
- |
|
comdev
|
comdev_misc_tools
|
PHP remote file inclusion vulnerability in adminfoot.php in Comdev Misc Tools 4.1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the path[docroo…
|
CWE-94
Code Injection
|
CVE-2006-5439
|
2017-07-20 10:33 |
2006-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299994
|
- |
|
comdev
|
comdev_form_designer
|
PHP remote file inclusion vulnerability in adminfoot.php in Comdev Form Designer 4.1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the path[doc…
|
NVD-CWE-Other
|
CVE-2006-5440
|
2017-07-20 10:33 |
2006-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299995
|
- |
|
comdev
|
comdev_web_blogger
|
PHP remote file inclusion vulnerability in adminfoot.php in Comdev Web Blogger 4.1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the path[docro…
|
NVD-CWE-Other
|
CVE-2006-5441
|
2017-07-20 10:33 |
2006-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299996
|
- |
|
xiao_gang
|
www_interactive_mathematics_server
|
Unspecified vulnerability in XIAO Gang WWW Interactive Mathematics Server (WIMS) before 3.60 allows remote attackers to modify unspecified data via unspecified vectors involving "variable rights."
|
NVD-CWE-Other
|
CVE-2006-5443
|
2017-07-20 10:33 |
2006-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299997
|
- |
|
xiao_gang
|
www_interactive_mathematics_server
|
This vulnerability is addressed in the following product release:
XIAO Gang, WWW Interactive Mathematics Server, 3.60
|
NVD-CWE-Other
|
CVE-2006-5443
|
2017-07-20 10:33 |
2006-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299998
|
- |
|
casinosoft
|
casino_script
|
SQL injection vulnerability in lobby/config.php in Casinosoft Casino Script (aka Masvet) 3.2 allows remote attackers to execute arbitrary SQL commands via the cfam parameter.
|
NVD-CWE-Other
|
CVE-2006-5446
|
2017-07-20 10:33 |
2006-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299999
|
- |
|
casinosoft
|
casino_script
|
Successful exploitation requires that "magic_quotes_gpc" is disabled.
|
NVD-CWE-Other
|
CVE-2006-5446
|
2017-07-20 10:33 |
2006-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300000
|
- |
|
sun
|
iplanet_messaging_server java_system_messaging_server
|
Cross-site scripting (XSS) vulnerability in Webmail in Sun Java System Messaging Server 6.0 through 6.2 and iPlanet Messaging Server 5.2 allows remote attackers to execute arbitrary Javascript via cr…
|
CWE-79
Cross-site Scripting
|
CVE-2006-5486
|
2017-07-20 10:33 |
2006-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|