270061
|
- |
|
xerox
|
workcentre
|
Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 use weak permissions for certain files, which allows unspecified file access.
|
NVD-CWE-Other
|
CVE-2006-6471
|
2008-09-6 06:14 |
2006-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270062
|
- |
|
xerox
|
workcentre
|
The httpd.conf file in Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 configures port 443 to be always active, which has unknown im…
|
NVD-CWE-Other
|
CVE-2006-6472
|
2008-09-6 06:14 |
2006-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270063
|
- |
|
xerox
|
workcentre
|
Multiple unspecified vulnerabilities in Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 have unknown impact and attack vectors, rela…
|
NVD-CWE-Other
|
CVE-2006-6473
|
2008-09-6 06:14 |
2006-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270064
|
- |
|
mantis
|
mantis
|
Mantis before 1.1.0a2 sets the default value of $g_bug_reminder_threshold to "reporter" instead of a more privileged role, which has unknown impact and attack vectors, possibly related to frequency o…
|
NVD-CWE-Other
|
CVE-2006-6515
|
2008-09-6 06:14 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270065
|
- |
|
drupal
|
chatroom_module
|
The Chatroom Module before 4.7.x.-1.0 for Drupal displays private messages in a chatroom's last messages overview, which allows remote attackers to obtain sensitive information by reading the overvie…
|
NVD-CWE-Other
|
CVE-2006-6529
|
2008-09-6 06:14 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270066
|
- |
|
oscommerce
|
oscommerce
|
Multiple cross-site scripting (XSS) vulnerabilities in osCommerce 3.0a3 allow remote attackers to inject arbitrary web script or HTML via the (1) set parameter to admin/modules.php, the (2) selected_…
|
NVD-CWE-Other
|
CVE-2006-6534
|
2008-09-6 06:14 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270067
|
- |
|
cilem
|
cilem_haber
|
Cross-site scripting (XSS) vulnerability in hata.asp in Cilem Haber Free Edition allows remote attackers to inject arbitrary web script or HTML via the hata parameter. NOTE: The provenance of this i…
|
NVD-CWE-Other
|
CVE-2006-6536
|
2008-09-6 06:14 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270068
|
- |
|
linux-ftpd-ssl
|
linux-ftpd-ssl
|
ftpd in linux-ftpd 0.17, and possibly other versions, performs a chdir before setting the UID, which allows local users to bypass intended access restrictions by redirecting their home directory to a…
|
NVD-CWE-Other
|
CVE-2006-5778
|
2008-09-6 06:13 |
2006-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270069
|
- |
|
parallels
|
parallels_desktop
|
prl_dhcpd in Parallels Desktop for Mac Build 1940 uses insecure permissions (0666) for /Library/Parallels/.dhcpd_configuration, which allows local users to modify DHCP configuration.
|
NVD-CWE-Other
|
CVE-2006-5817
|
2008-09-6 06:13 |
2006-11-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270070
|
- |
|
campware.org
|
campsite
|
Unspecified vulnerability in Campware Campsite before 2.6.2 has unknown impact and attack vectors, related to a "Security fix for you-know-what," possibly related to encrypted passwords.
|
NVD-CWE-Other
|
CVE-2006-5912
|
2008-09-6 06:13 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|