|
284161
|
- |
|
webroot_software
|
spy_sweeper
|
WebRoot Spy Sweeper 4.5.9 and earlier allows local users to bypass the "Startup-Shield" security restrictions by modifying certain registry keys.
|
NVD-CWE-Other
|
CVE-2006-6959
|
2018-10-17 01:29 |
2007-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284162
|
- |
|
webroot_software
|
spy_sweeper
|
The Compression Sweep feature in WebRoot Spy Sweeper 4.5.9 and earlier does not handle non-ZIP archives, which allows remote attackers to bypass the malware detection via files with (1) RAR, (2) GZ, …
|
NVD-CWE-Other
|
CVE-2006-6960
|
2018-10-17 01:29 |
2007-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284163
|
- |
|
webroot_software
|
spy_sweeper
|
WebRoot Spy Sweeper 4.5.9 and earlier does not detect malware based on file contents, which allows remote attackers to bypass malware detection by changing a file's name.
|
NVD-CWE-Other
|
CVE-2006-6961
|
2018-10-17 01:29 |
2007-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284164
|
- |
|
jetty
|
jetty_http_server
|
Jetty before 4.2.27, 5.1 before 5.1.12, 6.0 before 6.0.2, and 6.1 before 6.1.0pre3 generates predictable session identifiers using java.util.random, which makes it easier for remote attackers to gues…
|
NVD-CWE-Other
|
CVE-2006-6969
|
2018-10-17 01:29 |
2007-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284165
|
- |
|
opera
|
opera_browser
|
Opera 9.10 Final allows remote attackers to bypass the Fraud Protection mechanism by adding certain characters to the end of a domain name, as demonstrated by the "." and "/" characters, which is not…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-6970
|
2018-10-17 01:29 |
2007-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284166
|
- |
|
freetextbox
|
freetextbox
|
Cross-site scripting (XSS) vulnerability in the "Basic Toolbar Selection" in FreeTextBox allows remote attackers to execute arbitrary JavaScript via the javascript: URI in the (1) href or (2) onmouse…
|
CWE-79
Cross-site Scripting
|
CVE-2006-6977
|
2018-10-17 01:29 |
2007-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284167
|
- |
|
fckeditor
|
fckeditor
|
Cross-site scripting (XSS) vulnerability in the "Basic Toolbar Selection" in FCKEditor allows remote attackers to execute arbitrary JavaScript via the javascript: URI in the (1) href or (2) onmouseov…
|
CWE-79
Cross-site Scripting
|
CVE-2006-6978
|
2018-10-17 01:29 |
2007-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284168
|
- |
|
v3_chat
|
v3chat_instant_messenger
|
mycontacts.php in V3 Chat allows remote authenticated users to gain privileges as other users via a modified membername parameter.
|
NVD-CWE-Other
|
CVE-2006-6995
|
2018-10-17 01:29 |
2007-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284169
|
- |
|
v3_chat
|
v3chat_instant_messenger
|
The attacker must already be authenticated on V3Chat.
|
NVD-CWE-Other
|
CVE-2006-6995
|
2018-10-17 01:29 |
2007-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284170
|
- |
|
scart
|
scart
|
scart.cgi in SCart 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the page parameter of a show_text action.
|
NVD-CWE-Other
|
CVE-2006-7012
|
2018-10-17 01:29 |
2007-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|