270951
|
- |
|
igeneric
|
ig_shop
|
Multiple SQL injection vulnerabilities in display_review.php in iGeneric iG Shop 1.4 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id or (2) user_login_cookie param…
|
NVD-CWE-Other
|
CVE-2007-0133
|
2011-03-8 11:48 |
2007-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270952
|
- |
|
hp
|
openvms
|
Unspecified vulnerability in the DECnet-Plus 7.3-2 feature in DECnet/OSI 7.3-2 for OpenVMS ALPHA, and the DECnet-Plus 7.3 feature in DECnet/OSI 7.3 for OpenVMS VAX, allows attackers to obtain "uninte…
|
NVD-CWE-Other
|
CVE-2007-0139
|
2011-03-8 11:48 |
2007-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270953
|
- |
|
cisco
|
ip_contact_center_enterprise ip_contact_center_hosted unified_contact_center_enterprise unified_contact_center_hosted
|
The JTapi Gateway process in Cisco Unified Contact Center Enterprise, Unified Contact Center Hosted, IP Contact Center Enterprise, and Cisco IP Contact Center Hosted 5.0 through 7.1 allows remote att…
|
NVD-CWE-Other
|
CVE-2007-0198
|
2011-03-8 11:48 |
2007-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270954
|
- |
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server (WAS) 5.0 through 5.1.1.0 allows remote attackers to obtain JSP source code and other sensitive information via certain "special URIs."
|
NVD-CWE-Other
|
CVE-2006-7165
|
2011-03-8 11:48 |
2007-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270955
|
- |
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server (WAS) 5.1.1.9 and earlier allows remote attackers to obtain JSP source code and other sensitive information via "a specific JSP URL."
|
NVD-CWE-Other
|
CVE-2006-7166
|
2011-03-8 11:48 |
2007-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270956
|
- |
|
hosting_controller
|
hosting_controller
|
Directory traversal vulnerability in FolderManager/FolderManager.aspx in Hosting Controller 7c allows remote authenticated users to read and modify arbitrary files, and list arbitrary directories via…
|
NVD-CWE-Other
|
CVE-2006-6814
|
2011-03-8 11:47 |
2006-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270957
|
- |
|
mxmania
|
calendar_mx_basic
|
Calendar MX BASIC 1.0.2 and earlier store sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for cale…
|
NVD-CWE-Other
|
CVE-2006-6825
|
2011-03-8 11:47 |
2006-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270958
|
- |
|
efkan_forum
|
efkan_forum
|
Multiple SQL injection vulnerabilities in Efkan Forum 1.0 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the grup parameter in admin.asp, or the id parameter in (2) defa…
|
NVD-CWE-Other
|
CVE-2006-6828
|
2011-03-8 11:47 |
2006-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270959
|
- |
|
efkan_forum
|
efkan_forum
|
Efkan Forum 1.0 and earlier store sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for forum.mdb. …
|
NVD-CWE-Other
|
CVE-2006-6829
|
2011-03-8 11:47 |
2006-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270960
|
- |
|
joomla
|
joomla
|
Cross-site scripting (XSS) vulnerability in Joomla! before 1.0.12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, possibly related to poll.php or the module ti…
|
CWE-79
Cross-site Scripting
|
CVE-2006-6832
|
2011-03-8 11:47 |
2006-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|