|
288341
|
- |
|
castor
|
php_web_builder
|
PHP remote file inclusion vulnerability in lib/rs.php in 2le.net Castor PHP Web Builder 1.1.1 allows remote attackers to execute arbitrary PHP code via the rootpath parameter.
|
CWE-94
Code Injection
|
CVE-2006-5480
|
2017-10-19 10:29 |
2006-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288342
|
- |
|
castor
|
php_web_builder
|
Successful exploitation requires that "register_globals" is enabled and that support for ".htaccess" files is disabled.
|
CWE-94
Code Injection
|
CVE-2006-5480
|
2017-10-19 10:29 |
2006-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288343
|
- |
|
phpnuke
|
php-nuke
|
Multiple PHP remote file inclusion vulnerabilities in modules/My_eGallery/public/displayCategory.php in the pandaBB module for PHP-Nuke allow remote attackers to execute arbitrary PHP code via a URL …
|
CWE-94
Code Injection
|
CVE-2006-5494
|
2017-10-19 10:29 |
2006-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288344
|
- |
|
middlebury_college
|
segue_cms
|
PHP remote file inclusion vulnerability in themes/program/themesettings.inc.php in Segue CMS 1.5.8 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code…
|
NVD-CWE-Other
|
CVE-2006-5497
|
2017-10-19 10:29 |
2006-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288345
|
- |
|
wiclear
|
wiclear
|
Multiple PHP remote file inclusion vulnerabilities in WiClear 0.10 allow remote attackers to execute arbitrary PHP code via the path parameter in (1) inc/prepend.inc.php, (2) inc/lib/boxes.lib.php, (…
|
CWE-94
Code Injection
|
CVE-2006-5506
|
2017-10-19 10:29 |
2006-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288346
|
- |
|
bluevirus-design
|
ph_pexplorer
|
Directory traversal vulnerability in explorer_load_lang.php in PH Pexplorer 0.24 allows remote attackers to include arbitrary local files via ".." sequences in the Language cookie, as demonstrated by…
|
NVD-CWE-Other
|
CVE-2006-5510
|
2017-10-19 10:29 |
2006-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288347
|
- |
|
jaxultrabb
|
jaxultrabb
|
Direct static code injection vulnerability in delete.php in JaxUltraBB (JUBB) 2.0, when register_globals is enabled, allows remote attackers to inject arbitrary web script, HTML, or PHP via the conte…
|
NVD-CWE-Other
|
CVE-2006-5511
|
2017-10-19 10:29 |
2006-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288348
|
- |
|
web_group_communication_center
|
web_group_communication_center
|
SQL injection vulnerability in quiz.php in Web Group Communication Center (WGCC) 0.5.6b and earlier allows remote attackers to execute arbitrary SQL commands via the qzid parameter.
|
NVD-CWE-Other
|
CVE-2006-5514
|
2017-10-19 10:29 |
2006-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288349
|
- |
|
christopher_fowler
|
rssonate
|
Multiple PHP remote file inclusion vulnerabilities in Christopher Fowler (Rhode Island) RSSonate allow remote attackers to execute arbitrary PHP code via a URL in the PROJECT_ROOT parameter to (1) xm…
|
NVD-CWE-Other
|
CVE-2006-5518
|
2017-10-19 10:29 |
2006-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288350
|
- |
|
mambweather
|
mambweather
|
PHP remote file inclusion vulnerability in Savant2/Savant2_Plugin_options.php in the MambWeather 1.8.1 and earlier component for Mambo allows remote attackers to execute arbitrary PHP code via a URL …
|
CWE-94
Code Injection
|
CVE-2006-5519
|
2017-10-19 10:29 |
2006-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|