267191
|
- |
|
lucas_rodriguez_san_pedro
|
yet_another_news_system
|
Multiple SQL injection vulnerabilities in the login_user function in yans.func.php in Lucas Rodriguez San Pedro Yet Another News System (YANS) 0.2b allow remote attackers to execute arbitrary SQL com…
|
NVD-CWE-Other
|
CVE-2006-5908
|
2017-07-20 10:34 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267192
|
- |
|
vallheru
|
vallheru
|
Multiple SQL injection vulnerabilities in mail.php in Vallheru before 1.0.7 allow remote attackers to execute arbitrary SQL commands via the (1) id or (2) to parameters. NOTE: some of these details …
|
NVD-CWE-Other
|
CVE-2006-5926
|
2017-07-20 10:34 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267193
|
- |
|
kahua
|
kahua
|
Kahua before 0.7, when running multiple applications under a single supervisor, grants application access on the basis of username instead of username and database name, which allows remote authentic…
|
NVD-CWE-Other
|
CVE-2006-5932
|
2017-07-20 10:34 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267194
|
- |
|
shopsystems
|
shopsystems
|
SQL injection vulnerability in index.php in ShopSystems 4.0 and earlier allows remote attackers to execute arbitrary SQL commands via the sessid parameter.
|
NVD-CWE-Other
|
CVE-2006-5935
|
2017-07-20 10:34 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267195
|
- |
|
grisoft
|
avg_antivirus
|
Grisoft AVG Anti-Virus before 7.1.407 has unknown impact and remote attack vectors involving an uninitialized variable and a crafted CAB file.
|
CWE-20
Improper Input Validation
|
CVE-2006-5938
|
2017-07-20 10:34 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267196
|
- |
|
grisoft
|
avg_antivirus
|
Grisoft AVG Anti-Virus before 7.1.407 allows remote attackers to cause a denial of service (crash) via a crafted DOC file that triggers a divide-by-zero error. NOTE: some of these details are obtain…
|
CWE-369
Divide By Zero
|
CVE-2006-5939
|
2017-07-20 10:34 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267197
|
- |
|
conxint
|
conxint_ftp_server
|
Multiple directory traversal vulnerabilities in Conxint FTP Server 2.2.0603, and possibly earlier, allow remote attackers to read arbitrary files and list arbitrary directories via directory traversa…
|
NVD-CWE-Other
|
CVE-2006-5947
|
2017-07-20 10:34 |
2006-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267198
|
- |
|
altools
|
alftp_ftp_server
|
Directory traversal vulnerability in ALTools ALFTP FTP Server 4.1 beta 1, and possibly earlier, allows remote attackers to create arbitrary directories via directory traversal sequences in a MKD requ…
|
NVD-CWE-Other
|
CVE-2006-5949
|
2017-07-20 10:34 |
2006-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267199
|
- |
|
altools
|
alftp_ftp_server
|
Unspecified vulnerability in ALTools ALFTP FTP Server 4.1 beta 1, and possibly earlier, allows remote authenticated users to obtain the installation path via unknown vectors related to the REN comman…
|
NVD-CWE-Other
|
CVE-2006-5950
|
2017-07-20 10:34 |
2006-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267200
|
- |
|
web_inhabit
|
a\+_store_e-commerce
|
SQL injection vulnerability in browse.asp in A+ Store E-Commerce allows remote attackers to execute arbitrary SQL commands via the ParentID parameter.
|
NVD-CWE-Other
|
CVE-2006-5959
|
2017-07-20 10:34 |
2006-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|