|
288401
|
- |
|
efs_software
|
easy_address_book
|
Easy File Sharing (EFS) Easy Address Book 1.2, when run on an NTFS file system, allows remote attackers to read arbitrary files under the web root by appending "::$DATA" to the end of an HTTP GET req…
|
NVD-CWE-Other
|
CVE-2006-5715
|
2017-10-19 10:29 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288402
|
- |
|
aep_networks
|
smartgate_ssl_server
|
The SSL server in AEP Smartgate 4.3b allows remote attackers to determine existence of directories via a direct request for a directory URI, which returns different HTTP status codes for existing and…
|
CWE-200
Information Exposure
|
CVE-2006-5725
|
2017-10-19 10:29 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288403
|
- |
|
dxmsoft
|
xm_easy_personal_ftp_server
|
XM Easy Personal FTP Server 5.2.1 and earlier allows remote authenticated users to cause a denial of service via a long argument to the NLST command, possibly involving the -al flags.
|
CWE-399
Resource Management Errors
|
CVE-2006-5728
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288404
|
- |
|
modxcms
|
modxcms
|
PHP remote file inclusion vulnerability in manager/media/browser/mcpuk/connectors/php/Commands/Thumbnail.php in Modx CMS 0.9.2.1 and earlier allows remote attackers to execute arbitrary PHP code via …
|
NVD-CWE-Other
|
CVE-2006-5730
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288405
|
- |
|
modxcms
|
modxcms
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2006-5730
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288406
|
- |
|
lithium_cms
|
lithium_cms
|
Directory traversal vulnerability in classes/index.php in Lithium CMS 4.04c and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the siteconf[curl] p…
|
NVD-CWE-Other
|
CVE-2006-5731
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288407
|
- |
|
tgs_cms
|
tgs_cms
|
SQL injection vulnerability in logout.php in T.G.S. CMS 0.1.7 and earlier allows remote attackers to execute arbitrary SQL commands via the myauthorid cookie.
|
NVD-CWE-Other
|
CVE-2006-5732
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288408
|
- |
|
postnuke_software_foundation
|
postnuke
|
Directory traversal vulnerability in error.php in PostNuke 0.763 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the PNSVlang (PNSV lang) cookie…
|
NVD-CWE-Other
|
CVE-2006-5733
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288409
|
- |
|
phpdynasite
|
phpdynasite
|
Multiple PHP remote file inclusion vulnerabilities in phpDynaSite 3.2.2 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the racine parameter to (1) function_log.php, (2)…
|
NVD-CWE-Other
|
CVE-2006-5760
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288410
|
- |
|
article_system
|
article_system
|
PHP remote file inclusion vulnerability in volume.php in Article System 0.6 allows remote attackers to execute arbitrary PHP code via a URL in the config[public_dir] parameter.
|
NVD-CWE-Other
|
CVE-2006-5766
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|