|
308021
|
- |
|
xchangeboard
|
xchangeboard
|
Multiple SQL injection vulnerabilities in the checkUser function in inc/DBInterface.php in XchangeBoard 1.70 and earlier, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrar…
|
NVD-CWE-Other
|
CVE-2006-5500
|
2011-03-8 11:43 |
2006-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308022
|
- |
|
xchangeboard
|
xchangeboard
|
Successful exploitation requires that "magic_quotes_gpc" is disabled.
|
NVD-CWE-Other
|
CVE-2006-5500
|
2011-03-8 11:43 |
2006-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308023
|
- |
|
maxdev
|
md-pro
|
Cross-site scripting (XSS) vulnerability in user.php in MAXdev MD-Pro 1.0.76 allows remote attackers to inject arbitrary web script or HTML via the op parameter. NOTE: the provenance of this informa…
|
NVD-CWE-Other
|
CVE-2006-5564
|
2011-03-8 11:43 |
2006-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308024
|
- |
|
maxdev
|
md-pro
|
CRLF injection vulnerability in MAXdev MD-Pro 1.0.76 allows remote attackers to inject arbitrary HTTP headers via a CRLF sequence in the (1) name, (2) file, (3) module, and (4) func parameters in (a)…
|
NVD-CWE-Other
|
CVE-2006-5565
|
2011-03-8 11:43 |
2006-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308025
|
- |
|
nmnlogger
|
nmnlogger
|
Unspecified vulnerability in NmnLogger 1.0.0 and earlier has unknown impact and attack vectors related to configuration of mesasge drivers.
|
NVD-CWE-Other
|
CVE-2006-5642
|
2011-03-8 11:43 |
2006-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308026
|
- |
|
nmnlogger
|
nmnlogger
|
This vulnerability is addressed in the following product release:
NmnLogger, NmnLogger, 1.1
|
NVD-CWE-Other
|
CVE-2006-5642
|
2011-03-8 11:43 |
2006-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308027
|
- |
|
vilistextum
|
vilistextum
|
Multiple off-by-one errors in src/text.c in Vilistextum before 2.6.9 have unknown impact and attack vectors.
|
NVD-CWE-Other
|
CVE-2006-5657
|
2011-03-8 11:43 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308028
|
- |
|
ibm
|
informix_client_sdk informix_dynamic_server informix_i-connect
|
IBM Informix Dynamic Server 10.00, Informix Client Software Development Kit (CSDK) 2.90, and Informix I-Connect 2.90 use insecure permissions for installation scripts, which allows local users to gai…
|
NVD-CWE-Other
|
CVE-2006-5663
|
2011-03-8 11:43 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308029
|
- |
|
ibm
|
informix_client_sdk informix_dynamic_server informix_i-connect
|
The installation script in IBM Informix Dynamic Server 10.00, Informix Client Software Development Kit (CSDK) 2.90, and Informix I-Connect 2.90 allows local users to "compromise security" via a symli…
|
NVD-CWE-Other
|
CVE-2006-5664
|
2011-03-8 11:43 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308030
|
- |
|
free_php_scripts
|
free_image_hosting
|
PHP remote file inclusion vulnerability in contact.php in Free Image Hosting 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the AD_BODY_TEMP parameter. NOTE: the …
|
NVD-CWE-Other
|
CVE-2006-5671
|
2011-03-8 11:43 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|