|
288381
|
- |
|
mysource_cms
|
mysource_cms
|
PHP remote file inclusion vulnerability in web/init_mysource.php in MySource CMS 2.16.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the INCLUDE_PATH parameter.
|
NVD-CWE-Other
|
CVE-2006-5672
|
2017-10-19 10:29 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288382
|
- |
|
minibb
|
minibb
|
PHP remote file inclusion vulnerability in bb_func_txt.php in miniBB 2.0.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the pathTo…
|
NVD-CWE-Other
|
CVE-2006-5673
|
2017-10-19 10:29 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288383
|
- |
|
minibb
|
minibb
|
Successful exploitation requires that "register_globals" is enabled.
This vulnerability is addressed in the following product update:
MiniBB, MiniBB, 2.0.2a
|
NVD-CWE-Other
|
CVE-2006-5673
|
2017-10-19 10:29 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288384
|
- |
|
uni-vert
|
phpleague
|
SQL injection vulnerability in consult/classement.php in Uni-Vert PhpLeague 0.82 and earlier allows remote attackers to execute arbitrary SQL commands via the champ parameter.
|
NVD-CWE-Other
|
CVE-2006-5676
|
2017-10-19 10:29 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288385
|
- |
|
efs_software
|
efs_web_server
|
Easy File Sharing (EFS) Web Server 4.0, when running on an NTFS file system, allows remote attackers to read arbitrary files under the web root by appending "::$DATA" to the end of a HTTP GET request…
|
NVD-CWE-Other
|
CVE-2006-5714
|
2017-10-19 10:29 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288386
|
- |
|
efs_software
|
easy_address_book
|
Easy File Sharing (EFS) Easy Address Book 1.2, when run on an NTFS file system, allows remote attackers to read arbitrary files under the web root by appending "::$DATA" to the end of an HTTP GET req…
|
NVD-CWE-Other
|
CVE-2006-5715
|
2017-10-19 10:29 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288387
|
- |
|
aep_networks
|
smartgate_ssl_server
|
The SSL server in AEP Smartgate 4.3b allows remote attackers to determine existence of directories via a direct request for a directory URI, which returns different HTTP status codes for existing and…
|
CWE-200
Information Exposure
|
CVE-2006-5725
|
2017-10-19 10:29 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288388
|
- |
|
dxmsoft
|
xm_easy_personal_ftp_server
|
XM Easy Personal FTP Server 5.2.1 and earlier allows remote authenticated users to cause a denial of service via a long argument to the NLST command, possibly involving the -al flags.
|
CWE-399
Resource Management Errors
|
CVE-2006-5728
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288389
|
- |
|
modxcms
|
modxcms
|
PHP remote file inclusion vulnerability in manager/media/browser/mcpuk/connectors/php/Commands/Thumbnail.php in Modx CMS 0.9.2.1 and earlier allows remote attackers to execute arbitrary PHP code via …
|
NVD-CWE-Other
|
CVE-2006-5730
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288390
|
- |
|
modxcms
|
modxcms
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2006-5730
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|