|
279701
|
- |
|
internet_solutions_professionals
|
site_man
|
SQL injection vulnerability in admin_login.asp in ISP of Egypt SiteMan allows remote attackers to execute arbitrary SQL commands via the pass parameter.
|
NVD-CWE-Other
|
CVE-2006-1586
|
2018-10-19 01:33 |
2006-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279702
|
- |
|
x-doom zdaemon
|
x-doom zdaemon
|
Buffer overflow in the is_client_wad_ok function in w_wad.cpp for (1) Zdaemon 1.08.01 and (2) X-Doom allows remote attackers to execute arbitrary code via a long filename argument.
|
NVD-CWE-Other
|
CVE-2006-1592
|
2018-10-19 01:33 |
2006-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279703
|
- |
|
x-doom zdaemon
|
x-doom zdaemon
|
The (1) ZD_MissingPlayer, (2) ZD_UseItem, and (3) ZD_LoadNewClientLevel functions in sv_main.cpp for (a) Zdaemon 1.08.01 and (b) X-Doom allows remote attackers to cause a denial of service (crash) vi…
|
CWE-399
Resource Management Errors
|
CVE-2006-1593
|
2018-10-19 01:33 |
2006-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279704
|
- |
|
an
|
an-httpd
|
AN HTTPD 1.42n, and possibly other versions before 1.42p, allows remote attackers to obtain source code of scripts via crafted requests with (1) dot and (2) space characters in the file extension.
|
NVD-CWE-Other
|
CVE-2006-1598
|
2018-10-19 01:33 |
2006-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279705
|
- |
|
phpwebgallery
|
phpwebgallery
|
SQL injection vulnerability in category.php in PhpWebGallery 1.4.1 allows remote attackers to execute arbitrary SQL commands via the search parameter.
|
NVD-CWE-Other
|
CVE-2006-1600
|
2018-10-19 01:33 |
2006-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279706
|
- |
|
phpnuke-clan
|
phpnuke-clan
|
PHP remote file inclusion vulnerability in includes/functions_common.php in the VWar Account module (vWar_Account) in PHPNuke Clan 3.0.1 allows remote attackers to include arbitrary files via a URL i…
|
NVD-CWE-Other
|
CVE-2006-1602
|
2018-10-19 01:33 |
2006-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279707
|
- |
|
squery
|
squery
|
PHP remote file inclusion vulnerability in lib/armygame.php in SQuery 4.5 and earlier, as used in products such as Autonomous LAN party (ALP), allows remote attackers to execute arbitrary PHP code vi…
|
CWE-94
Code Injection
|
CVE-2006-1610
|
2018-10-19 01:33 |
2006-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279708
|
- |
|
aweb_labs
|
awebnews
|
Multiple cross-site scripting (XSS) vulnerabilities in visview.php in aWebNews 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) yname, (2) emailadd, (3) subject, and (4) …
|
NVD-CWE-Other
|
CVE-2006-1612
|
2018-10-19 01:33 |
2006-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279709
|
- |
|
aweb_labs
|
awebnews
|
Successful exploitation requires that "magic_quotes_gpc" is disabled.
|
NVD-CWE-Other
|
CVE-2006-1612
|
2018-10-19 01:33 |
2006-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279710
|
- |
|
aweb_labs
|
awebnews
|
Multiple SQL injection vulnerabilities in aWebNews 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) user123 variable in (a) login.php or (b) fpass.php; or (2) cid parameter to…
|
NVD-CWE-Other
|
CVE-2006-1613
|
2018-10-19 01:33 |
2006-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|