270281
|
- |
|
mybb
|
mybb
|
Multiple unspecified vulnerabilities in MyBulletinBoard (MyBB) before 1.0.2 have unspecified impact and attack vectors, related to (1) admin/moderate.php, (2) admin/themes.php, (3) inc/functions.php,…
|
NVD-CWE-noinfo
|
CVE-2006-0218
|
2013-01-3 14:00 |
2006-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270282
|
- |
|
invisionpower
|
invision_power_board
|
The make_password function in ipsclass.php in Invision Power Board (IPB) 2.1.4 uses random data generated from partially predictable seeds to create the authentication code that is sent by e-mail to …
|
CWE-287
Improper Authentication
|
CVE-2006-0633
|
2013-01-3 14:00 |
2006-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270283
|
- |
|
zen-cart
|
zen_cart
|
Zen Cart before 1.2.7 does not protect the admin/includes directory, which allows remote attackers to cause unknown impact via unspecified vectors, probably direct requests.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-0697
|
2013-01-3 14:00 |
2006-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270284
|
- |
|
e107
|
e107
|
Incomplete blacklist vulnerability in usersettings.php in e107 0.7.20 and earlier allows remote attackers to conduct SQL injection attacks via the loginname parameter.
|
NVD-CWE-Other
|
CVE-2010-2098
|
2012-12-13 13:00 |
2010-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270285
|
- |
|
e107
|
e107
|
Per: http://cwe.mitre.org/data/definitions/184.html
'CWE-184: Incomplete Blacklist'
|
NVD-CWE-Other
|
CVE-2010-2098
|
2012-12-13 13:00 |
2010-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270286
|
- |
|
kerio
|
personal_firewall serverfirewall
|
The FWDRV driver in Kerio Personal Firewall 4.2 and Server Firewall 1.1.1 allows local users to cause a denial of service (crash) by setting the PAGE_NOACCESS or PAGE_GUARD protection on the Page Env…
|
NVD-CWE-Other
|
CVE-2005-3286
|
2012-12-13 11:43 |
2005-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270287
|
- |
|
mybb
|
mybb
|
Multiple cross-site scripting (XSS) vulnerabilities in MyBB before 1.2.13 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) portal.php and (2) inc/functi…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3069
|
2012-11-27 12:48 |
2008-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270288
|
- |
|
mybb
|
mybb
|
Unspecified vulnerability in inc/datahandler/user.php in MyBB before 1.2.13 has unknown impact and attack vectors related to the $user['language'] variable, probably related to SQL injection.
|
CWE-89 NVD-CWE-noinfo
SQL Injection
|
CVE-2008-3070
|
2012-11-27 12:48 |
2008-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270289
|
- |
|
mybb
|
mybb
|
Directory traversal vulnerability in inc/class_language.php in MyBB before 1.2.13 has unknown impact and attack vectors related to the $language variable.
|
NVD-CWE-noinfo CWE-22
Path Traversal
|
CVE-2008-3071
|
2012-11-27 12:48 |
2008-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270290
|
- |
|
simple_machines
|
simple_machines_forum
|
Simple Machines Forum (SMF) 1.1.x before 1.1.5 and 1.0.x before 1.0.13, when running in PHP before 4.2.0, does not properly seed the random number generator, which has unknown impact and attack vecto…
|
NVD-CWE-noinfo CWE-189
Numeric Errors
|
CVE-2008-3072
|
2012-11-27 12:48 |
2008-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|