|
288321
|
- |
|
blazevideo
|
blaze_dvd
|
Stack-based buffer overflow in BlazeVideo BlazeDVD Standard and Professional 5.0, and possibly earlier, allows remote attackers to execute arbitrary code via a long filename in a PLF playlist.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2006-6199
|
2017-10-19 10:29 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288322
|
- |
|
nukeai
|
nukeai
|
PHP remote file inclusion vulnerability in modules/NukeAI/util.php in the NukeAI 0.0.3 Beta module for PHP-Nuke, aka Program E is an AIML chatterbot, allows remote attackers to execute arbitrary PHP …
|
NVD-CWE-Other
|
CVE-2006-6202
|
2017-10-19 10:29 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288323
|
- |
|
krishan
|
flyspray
|
Directory traversal vulnerability in startdown.php in the Flyspray ME 1.0.1 (com_flyspray) component for Mambo allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
|
NVD-CWE-Other
|
CVE-2006-6203
|
2017-10-19 10:29 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288324
|
- |
|
pegames
|
pegames
|
index.php in PEGames uses the extract function to overwrite critical variables, which allows remote attackers to conduct PHP remote file inclusion attacks via the abs_url parameter, which is later ex…
|
NVD-CWE-Other
|
CVE-2006-6213
|
2017-10-19 10:29 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288325
|
- |
|
wallpaper
|
wallpaper_complete_website
|
SQL injection vulnerability in wallpaper.php in Wallpaper Website (Wallpaper Complete Website) 1.0.09 allows remote attackers to execute arbitrary SQL commands via the wallpaperid parameter.
|
NVD-CWE-Other
|
CVE-2006-6214
|
2017-10-19 10:29 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288326
|
- |
|
nivisec
|
hacks_list
|
SQL injection vulnerability in admin_hacks_list.php in the Nivisec Hacks List 1.21 and earlier phpBB module allows remote attackers to execute arbitrary SQL commands via the hack_id parameter.
|
NVD-CWE-Other
|
CVE-2006-6216
|
2017-10-19 10:29 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288327
|
- |
|
recipes_complete_website
|
recipes_complete_website
|
Multiple SQL injection vulnerabilities in Recipes Website (Recipes Complete Website) 1.1.14 allow remote attackers to execute arbitrary SQL commands via the (1) recipeid parameter to recipe.php or th…
|
NVD-CWE-Other
|
CVE-2006-6220
|
2017-10-19 10:29 |
2006-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288328
|
- |
|
geeklog
|
geeklog
|
Multiple PHP remote file inclusion vulnerabilities in GeekLog 1.4 allow remote attackers to execute arbitrary code via a URL in the _CONF[path] parameter to (1) links/functions.inc, (2) polls/functio…
|
NVD-CWE-Other
|
CVE-2006-6225
|
2017-10-19 10:29 |
2006-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288329
|
- |
|
s9y
|
serendipity
|
Successful exploitation requires that "register_globals" is enabled.
This vulnerability is addressed in the following product release:
S9Y, Serendipity, 1.0.4
|
CWE-22
Path Traversal
|
CVE-2006-6242
|
2017-10-19 10:29 |
2006-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288330
|
- |
|
s9y
|
serendipity
|
Multiple directory traversal vulnerabilities in Serendipity 1.0.3 and earlier allow remote attackers to read or include arbitrary local files via a .. (dot dot) sequence in the serendipity[charset] p…
|
CWE-22
Path Traversal
|
CVE-2006-6242
|
2017-10-19 10:29 |
2006-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|