267411
|
- |
|
smartsitecms
|
smartsitecms
|
admin.php in SmartSiteCMS 1.0 allows remote attackers to bypass authentication and gain administrator privileges by setting the userName cookie.
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2006-7074
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267412
|
- |
|
aqualung
|
aqualung
|
Buffer overflow in the meta_read_flac function in meta_decoder.c for Aqualung 0.9beta5 and earlier, and CVS 0.193.2 and earlier, allows user-assisted attackers to execute arbitrary code via a long Vo…
|
NVD-CWE-Other
|
CVE-2006-7075
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267413
|
- |
|
phpbb_group
|
phpbb_advanced_guestbook
|
Cross-site scripting (XSS) vulnerability in guestbook.php in Advanced Guestbook 2.4 for phpBB allows remote attackers to inject arbitrary web script or HTML via the entry parameter. NOTE: this issue…
|
NVD-CWE-Other
|
CVE-2006-7076
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267414
|
- |
|
phpbb_group
|
phpbb_advanced_guestbook
|
SQL injection vulnerability in guestbook.php in Advanced Guestbook 2.4 for phpBB allows remote attackers to execute arbitrary SQl commands via the entry parameter.
|
NVD-CWE-Other
|
CVE-2006-7077
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267415
|
- |
|
rigter_portal_system
|
rigter_portal_system
|
Rigter Portal System (RPS) 1.0, 2.0, and 3.0 allows remote attackers to bypass authentication and upload arbitrary files via direct requests to (1) adm/photos/images.php and (2) adm/down/files.php.
|
NVD-CWE-Other
|
CVE-2006-7082
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267416
|
- |
|
rigter_portal_system
|
rigter_portal_system
|
Directory traversal vulnerability in index.php in Rigter Portal System (RPS) 1.0, 2.0, and 3.0 allows remote attackers to read arbitrary files via ".." sequences in the id parameter.
|
NVD-CWE-Other
|
CVE-2006-7083
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267417
|
- |
|
rigter_portal_system
|
rigter_portal_system
|
Rigter Portal System (RPS) 1.0, 2.0, and 3.0 allows remote attackers to add arbitrary content and conduct XSS attacks via a direct request to add_art.php. NOTE: this issue was originally reported as…
|
NVD-CWE-Other
|
CVE-2006-7085
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267418
|
- |
|
simple_php_forum
|
simple_php_forum
|
Multiple SQL injection vulnerabilities in Simple PHP Forum before 0.4 allow remote attackers to execute arbitrary SQL commands via the username parameter to (1) logon_user.php and (2) update_profile.…
|
NVD-CWE-Other
|
CVE-2006-7088
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267419
|
- |
|
ban
|
ban
|
SQL injection vulnerability in connexion.php in Ban 0.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2006-7089
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267420
|
- |
|
phpbb_security
|
phpbb_security
|
PHP remote file inclusion vulnerability in phpbb_security.php in phpBB Security 1.0.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the php_root_path parameter.
|
CWE-94
Code Injection
|
CVE-2006-7090
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|