265311
|
- |
|
adobe
|
coldfusion
|
Successful exploitation requires that Global Script Protection is not enabled.
|
CWE-79
Cross-site Scripting
|
CVE-2006-5859
|
2011-03-8 11:43 |
2007-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265312
|
- |
|
pstotext
|
pstotext
|
pstotext before 1.9 allows user-assisted attackers to execute arbitrary commands via shell metacharacters in a file name.
|
NVD-CWE-Other
|
CVE-2006-5869
|
2011-03-8 11:43 |
2006-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265313
|
- |
|
cchost
|
cchost
|
SQL injection vulnerability in Creative Commons Tools ccHost before 3.0 allows remote attackers to execute arbitrary SQL commands via a crafted URL, which is used to populate the file ID. NOTE: Some…
|
NVD-CWE-Other
|
CVE-2006-4778
|
2011-03-8 11:42 |
2006-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265314
|
- |
|
roxio
|
toast
|
Race condition in Deja Vu, as used in Roxio Toast Titanium 7 and possibly other products, allows local users to execute arbitrary code via temporary files, including dejavu_manual.rb, which are execu…
|
CWE-362
Race Condition
|
CVE-2006-4801
|
2011-03-8 11:42 |
2006-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265315
|
- |
|
iodine
|
iodine
|
Unspecified vulnerability in IP over DNS is now easy (iodine) before 0.3.2 has unknown impact and attack vectors, related to "potential security problems."
|
NVD-CWE-Other
|
CVE-2006-4831
|
2011-03-8 11:42 |
2006-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265316
|
- |
|
iodine
|
iodine
|
This vulnerability is addressed in the following product release:
Iodine, Iodine, 0.3.2
|
NVD-CWE-Other
|
CVE-2006-4831
|
2011-03-8 11:42 |
2006-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265317
|
- |
|
paul_smith_computer_services
|
vcap
|
Multiple cross-site scripting (XSS) vulnerabilities in Paul Smith Computer Services vCAP 1.7.0 allow remote attackers to inject arbitrary web script or HTML via (1) the statusmsg parameter in Registe…
|
NVD-CWE-Other
|
CVE-2006-5035
|
2011-03-8 11:42 |
2006-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265318
|
- |
|
andreas_gohr
|
dokuwiki
|
lib/exec/fetch.php in DokuWiki before 2006-03-09e allows remote attackers to cause a denial of service (CPU consumption) via large w and h parameters, when resizing an image.
|
NVD-CWE-Other
|
CVE-2006-5098
|
2011-03-8 11:42 |
2006-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265319
|
- |
|
andreas_gohr
|
dokuwiki
|
lib/exec/fetch.php in DokuWiki before 2006-03-09e, when conf[imconvert] is configured to use ImageMagick, allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) w a…
|
NVD-CWE-Other
|
CVE-2006-5099
|
2011-03-8 11:42 |
2006-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265320
|
- |
|
facileforms
|
facileforms
|
Cross-site scripting (XSS) vulnerability in FacileForms before 1.4.7 for Mambo and Joomla!, when either register_globals or RG_EMULATION is enabled, allows remote attackers to inject arbitrary web sc…
|
NVD-CWE-Other
|
CVE-2006-5106
|
2011-03-8 11:42 |
2006-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|