|
279411
|
- |
|
microsoft
|
windows_2000 windows_xp
|
The RtlDosPathNameToNtPathName_U API function in NTDLL.DLL in Microsoft Windows 2000 SP4 and XP SP2 does not properly convert DOS style paths with trailing spaces into NT style paths, which allows co…
|
NVD-CWE-Other
|
CVE-2006-2334
|
2018-10-19 01:39 |
2006-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279412
|
- |
|
jelsoft
|
vbulletin
|
Jelsoft vBulletin accepts uploads of Cascading Style Sheets (CSS) and processes them in a way that allows remote authenticated administrators to gain shell access by uploading a CSS file that contain…
|
NVD-CWE-Other
|
CVE-2006-2335
|
2018-10-19 01:39 |
2006-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279413
|
- |
|
mybulletinboard
|
mybulletinboard
|
SQL injection vulnerability in showthread.php in MyBB (aka MyBulletinBoard) 1.1.1 allows remote attackers to execute arbitrary SQL commands via the comma parameter.
|
NVD-CWE-Other
|
CVE-2006-2336
|
2018-10-19 01:39 |
2006-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279414
|
- |
|
d-link
|
dsl-g604t
|
Directory traversal vulnerability in webcm in the D-Link DSL-G604T Wireless ADSL Router Modem allows remote attackers to read arbitrary files via an absolute path in the getpage parameter.
|
CWE-22
Path Traversal
|
CVE-2006-2337
|
2018-10-19 01:39 |
2006-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279415
|
- |
|
planet_concept
|
planetstat
|
PlaNet Concept plaNetStat 20050127 allows remote attackers to gain administrative privileges, and view and configure log files, via a direct request to the (1) admin.php or (2) settings.php page.
|
NVD-CWE-Other
|
CVE-2006-2338
|
2018-10-19 01:39 |
2006-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279416
|
- |
|
symantec
|
enterprise_firewall gateway_security
|
The HTTP proxy in Symantec Gateway Security 5000 Series 2.0.1 and 3.0, and Enterprise Firewall 8.0, when NAT is being used, allows remote attackers to determine internal IP addresses by using malform…
|
CWE-200
Information Exposure
|
CVE-2006-2341
|
2018-10-19 01:39 |
2006-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279417
|
- |
|
oasyssoft
|
e-business_designer
|
E-Business Designer (eBD) 3.1.4 and earlier allows remote attackers to obtain the full path of the web server via "'" characters, and possibly other invalid values, in (1) the id parameter to form_gr…
|
NVD-CWE-Other
|
CVE-2006-2347
|
2018-10-19 01:39 |
2006-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279418
|
- |
|
oasyssoft
|
e-business_designer
|
Cross-site scripting (XSS) vulnerability in form_grupo.html in E-Business Designer (eBD) 3.1.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the id parameter. NOTE: …
|
NVD-CWE-Other
|
CVE-2006-2348
|
2018-10-19 01:39 |
2006-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279419
|
- |
|
oasyssoft
|
e-business_designer
|
E-Business Designer (eBD) 3.1.4 and earlier allows remote attackers to upload or modify arbitrary files, and execute arbitrary code, via a direct request to (1) common/html_editor/image_browser.uploa…
|
NVD-CWE-Other
|
CVE-2006-2349
|
2018-10-19 01:39 |
2006-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
279420
|
- |
|
phpbb_group
|
phpbb
|
Cross-site scripting (XSS) vulnerability in charts.php in the Chart mod for phpBB allows remote attackers to inject arbitrary web script or HTML via the id parameter. NOTE: this issue might be resul…
|
NVD-CWE-Other
|
CVE-2006-2359
|
2018-10-19 01:39 |
2006-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|