267481
|
- |
|
novell
|
imanager
|
This vulnerability is addressed in the following product release:
Novell, iManager, 2.6
|
CWE-189 CWE-399
Numeric Errors Resource Management Errors
|
CVE-2006-4517
|
2017-07-20 10:33 |
2006-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267482
|
- |
|
qbik
|
wingate
|
Qbik WinGate 6.1.4 and earlier allows remote attackers to cause a denial of service (CPU consumption) via a DNS request with a self-referencing compressed name pointer, which triggers an infinite loo…
|
NVD-CWE-Other
|
CVE-2006-4518
|
2017-07-20 10:33 |
2006-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267483
|
- |
|
novell
|
edirectory
|
ncp in Novell eDirectory before 8.7.3 SP9, and 8.8.x before 8.8.1 FTF2, does not properly handle NCP fragments with a negative length, which allows remote attackers to cause a denial of service (daem…
|
NVD-CWE-Other
|
CVE-2006-4520
|
2017-07-20 10:33 |
2007-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267484
|
- |
|
novell
|
edirectory
|
The BerDecodeLoginDataRequest function in the libnmasldap.so NMAS module in Novell eDirectory 8.8 and 8.8.1 before the Security Services 2.0.3 patch does not properly increment a pointer when handlin…
|
NVD-CWE-Other
|
CVE-2006-4521
|
2017-07-20 10:33 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267485
|
- |
|
dec
|
dec_openvms_alpha
|
NET$SESSION_CONTROL.EXE in DECnet-Plus in OpenVMS ALPHA 7.3-2 and Alpha 8.2 writes a password to an audit log file when there is a successful connection after a "network breakin" event, which allows …
|
CWE-200
Information Exposure
|
CVE-2006-4537
|
2017-07-20 10:33 |
2006-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267486
|
- |
|
learn.com
|
learncenter
|
Cross-site scripting (XSS) vulnerability in learncenter.asp in Learn.com LearnCenter allows remote attackers to inject arbitrary web script or HTML via the id parameter.
|
NVD-CWE-Other
|
CVE-2006-4540
|
2017-07-20 10:33 |
2006-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267487
|
- |
|
usermin webmin
|
usermin webmin
|
Webmin before 1.296 and Usermin before 1.226 do not properly handle a URL with a null ("%00") character, which allows remote attackers to conduct cross-site scripting (XSS), read CGI program source c…
|
CWE-79
Cross-site Scripting
|
CVE-2006-4542
|
2017-07-20 10:33 |
2006-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267488
|
- |
|
usermin webmin
|
usermin webmin
|
This vulnerability is addressed in the following product releases:
Webmin, Webmin, 1.296
Usermin, Usermin, 1.226
|
CWE-79
Cross-site Scripting
|
CVE-2006-4542
|
2017-07-20 10:33 |
2006-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267489
|
- |
|
retro64
|
cr64loader_activex_control
|
Buffer overflow in the Retro64 / Miniclip CR64Loader ActiveX control allows remote attackers to execute arbitrary code via unspecified vectors involving an HTML document that references the CLSID of …
|
NVD-CWE-Other
|
CVE-2006-4555
|
2017-07-20 10:33 |
2006-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267490
|
- |
|
phpnuke
|
myheadlines
|
Cross-site scripting (XSS) vulnerability in the MyHeadlines before 4.3.2 module for PHP-Nuke allows remote attackers to inject arbitrary web script or HTML via the myh_op parameter to modules.php.
|
NVD-CWE-Other
|
CVE-2006-4563
|
2017-07-20 10:33 |
2006-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|