|
279531
|
- |
|
scriptsez
|
cute_guestbook
|
Cross-site scripting (XSS) vulnerability in Scriptsez Cute Guestbook 20060211 allows remote attackers to inject arbitrary web script or HTML via the Comments field when signing the guestbook.
|
NVD-CWE-Other
|
CVE-2006-2232
|
2018-10-19 01:38 |
2006-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279532
|
- |
|
banktown
|
btcxctl20com_activex_control
|
Buffer overflow in BankTown Client Control (aka BtCxCtl20Com) 1.4.2.51817, and possibly 1.5.2.50209, allows remote attackers to execute arbitrary code via a long string in the first argument to SetBa…
|
NVD-CWE-Other
|
CVE-2006-2233
|
2018-10-19 01:38 |
2006-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279533
|
- |
|
tyrocms
|
tyrocms
|
Multiple cross-site scripting (XSS) vulnerabilities in TyroCMS beta 1.0 allow remote attackers to inject arbitrary web script or HTML via (1) a javascript URI in an img BBCode tag, or a JavaScript ev…
|
NVD-CWE-Other
|
CVE-2006-2234
|
2018-10-19 01:38 |
2006-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279534
|
- |
|
codemunkyx
|
simple_poll
|
CodeMunkyX (aka free-php.net) Simple Poll 1.0, when authentication is not required for the admin directory, allows remote attackers to gain administrative privileges by appending /admin/ to the top-l…
|
NVD-CWE-Other
|
CVE-2006-2235
|
2018-10-19 01:38 |
2006-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279535
|
- |
|
codemunkyx
|
simple_poll
|
This vulnerability can only be exploited when authentication is not required for the admin directory.
|
NVD-CWE-Other
|
CVE-2006-2235
|
2018-10-19 01:38 |
2006-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279536
|
- |
|
id_software
|
quake_3_arena quake_3_engine return_to_castle_wolfenstein wolfenstein_enemy_territory
|
Buffer overflow in the Quake 3 Engine, as used by (1) ET 2.60, (2) Return to Castle Wolfenstein 1.41, and (3) Quake III Arena 1.32b allows remote attackers to execute arbitrary commands via a long re…
|
NVD-CWE-Other
|
CVE-2006-2236
|
2018-10-19 01:38 |
2006-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279537
|
- |
|
ftrainsoft
|
fast_click
|
PHP remote file inclusion vulnerability in show.php in Fast Click SQL Lite 1.1.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the path parameter. NOTE: This is a di…
|
NVD-CWE-Other
|
CVE-2006-2241
|
2018-10-19 01:38 |
2006-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279538
|
- |
|
uapplication
|
ublog
|
Cross-site scripting (XSS) vulnerability in UBlog 1.6 Access Edition allows remote attackers to inject arbitrary web script or HTML via text fields when adding a blog entry.
|
NVD-CWE-Other
|
CVE-2006-2246
|
2018-10-19 01:38 |
2006-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279539
|
- |
|
webcalendar
|
webcalendar
|
WebCalendar 1.0.1 to 1.0.3 generates different error messages depending on whether or not a username is valid, which allows remote attackers to enumerate valid usernames.
|
NVD-CWE-Other
|
CVE-2006-2247
|
2018-10-19 01:38 |
2006-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279540
|
- |
|
cutephp
|
cutenews
|
Multiple cross-site scripting (XSS) vulnerabilities in search.php in CuteNews 1.4.1 and earlier, and possibly 1.4.5, allow remote attackers to inject arbitrary web script or HTML via the (1) user, (2…
|
NVD-CWE-Other
|
CVE-2006-2249
|
2018-10-19 01:38 |
2006-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|