268571
|
- |
|
comdev
|
comdev_web_blogger
|
PHP remote file inclusion vulnerability in adminfoot.php in Comdev Web Blogger 4.1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the path[docro…
|
NVD-CWE-Other
|
CVE-2006-5441
|
2017-07-20 10:33 |
2006-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268572
|
- |
|
xiao_gang
|
www_interactive_mathematics_server
|
Unspecified vulnerability in XIAO Gang WWW Interactive Mathematics Server (WIMS) before 3.60 allows remote attackers to modify unspecified data via unspecified vectors involving "variable rights."
|
NVD-CWE-Other
|
CVE-2006-5443
|
2017-07-20 10:33 |
2006-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268573
|
- |
|
xiao_gang
|
www_interactive_mathematics_server
|
This vulnerability is addressed in the following product release:
XIAO Gang, WWW Interactive Mathematics Server, 3.60
|
NVD-CWE-Other
|
CVE-2006-5443
|
2017-07-20 10:33 |
2006-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268574
|
- |
|
casinosoft
|
casino_script
|
SQL injection vulnerability in lobby/config.php in Casinosoft Casino Script (aka Masvet) 3.2 allows remote attackers to execute arbitrary SQL commands via the cfam parameter.
|
NVD-CWE-Other
|
CVE-2006-5446
|
2017-07-20 10:33 |
2006-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268575
|
- |
|
casinosoft
|
casino_script
|
Successful exploitation requires that "magic_quotes_gpc" is disabled.
|
NVD-CWE-Other
|
CVE-2006-5446
|
2017-07-20 10:33 |
2006-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268576
|
- |
|
sun
|
iplanet_messaging_server java_system_messaging_server
|
Cross-site scripting (XSS) vulnerability in Webmail in Sun Java System Messaging Server 6.0 through 6.2 and iPlanet Messaging Server 5.2 allows remote attackers to execute arbitrary Javascript via cr…
|
CWE-79
Cross-site Scripting
|
CVE-2006-5486
|
2017-07-20 10:33 |
2006-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268577
|
- |
|
xchangeboard
|
xchangeboard
|
SQL injection vulnerability in XchangeBoard 1.70, and possibly earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the loginNick parameter during…
|
NVD-CWE-Other
|
CVE-2006-5488
|
2017-07-20 10:33 |
2006-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268578
|
- |
|
rim
|
blackberry_enterprise_server
|
Research in Motion (RIM) BlackBerry Enterprise Server 4.1 SP2 before Hotfix 1 for IBM Lotus Domino might allow attackers with meeting organizer privileges to cause a denial of service (application ha…
|
NVD-CWE-Other
|
CVE-2006-5489
|
2017-07-20 10:33 |
2006-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268579
|
- |
|
middlebury_college
|
segue_cms
|
Multiple SQL injection vulnerabilities in Segue Content Management System (CMS) before 1.5.8 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2006-5490
|
2017-07-20 10:33 |
2006-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268580
|
- |
|
maarch
|
maarch
|
Unspecified vulnerability in Maerys Archive (Maarch) before 2.0.1 allows remote authenticated users to obtain sensitive information (document contents) via unspecified attack vectors related to "gran…
|
NVD-CWE-Other
|
CVE-2006-5492
|
2017-07-20 10:33 |
2006-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|