|
279671
|
- |
|
phpsurveyor
|
phpsurveyor
|
SQL injection vulnerability in save.php in PHPSurveyor 0.995 and earlier allows remote attackers to execute arbitrary SQL commands via the surveyid cookie. NOTE: this issue could be leveraged to exe…
|
NVD-CWE-Other
|
CVE-2006-2065
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279672
|
- |
|
mkportal
|
mkportal
|
Multiple cross-site scripting (XSS) vulnerabilities pm_popup.php in MKPortal 1.1 Rc1 and earlier, as used with vBulletin 3.5.4 and earlier, allow remote attackers to inject arbitrary web script or HT…
|
CWE-79
Cross-site Scripting
|
CVE-2006-2066
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279673
|
- |
|
mkportal
|
mkportal
|
SQL injection vulnerability in vb_board_functions.php in MKPortal 1.1, as used with vBulletin 3.5.4 and earlier, allows remote attackers to execute arbitrary SQL commands via the userid parameter.
|
NVD-CWE-Other
|
CVE-2006-2067
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279674
|
- |
|
mybb
|
devbb
|
Cross-site scripting (XSS) vulnerability in member.php in DevBB 1.0.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the member parameter in a viewpro action.
|
NVD-CWE-Other
|
CVE-2006-2070
|
2018-10-19 01:37 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279675
|
- |
|
mozilla
|
firefox mozilla_suite seamonkey thunderbird
|
The JavaScript engine in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 does not properly handle temporary variables that…
|
NVD-CWE-Other
|
CVE-2006-1742
|
2018-10-19 01:36 |
2006-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279676
|
- |
|
mozilla
|
firefox mozilla_suite seamonkey thunderbird
|
Fixed in: Firefox 1.5
Firefox 1.0.8
Thunderbird 1.5
Thunderbird 1.0.8
SeaMonkey 1.0
Mozilla Suite 1.7.13
|
NVD-CWE-Other
|
CVE-2006-1742
|
2018-10-19 01:36 |
2006-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279677
|
- |
|
smartisoft
|
phplistpro
|
PHP remote file inclusion vulnerability in config.php in phpListPro 2.0 and earlier allows remote attackers to execute arbitrary PHP code via the returnpath parameter. NOTE: this issue was later rep…
|
CWE-94
Code Injection
|
CVE-2006-1749
|
2018-10-19 01:36 |
2006-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279678
|
- |
|
swsoft
|
confixx
|
SQL injection vulnerability in index.php in SWSoft Confixx 3.0.6, 3.0.8, and 3.1.2 allows remote attackers to execute arbitrary SQL commands via the SID parameter.
|
NVD-CWE-Other
|
CVE-2006-1754
|
2018-10-19 01:36 |
2006-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279679
|
- |
|
matthew_dingley
|
md_news
|
SQL injection vulnerability in admin.php in MD News 1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
NVD-CWE-Other
|
CVE-2006-1755
|
2018-10-19 01:36 |
2006-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279680
|
- |
|
matthew_dingley
|
md_news
|
MD News 1 allows remote attackers to bypass authentication via a direct request to a script in the Administration Area.
|
NVD-CWE-Other
|
CVE-2006-1756
|
2018-10-19 01:36 |
2006-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|