267761
|
- |
|
mailenable
|
mailenable_enterprise mailenable_professional
|
The IMAP service for MailEnable Professional and Enterprise Edition 2.0 through 2.34, Professional Edition 1.6 through 1.83, and Enterprise Edition 1.1 through 1.40 allows remote attackers to cause a…
|
NVD-CWE-Other
|
CVE-2006-6484
|
2017-07-29 10:29 |
2006-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267762
|
- |
|
iconics
|
dialog_wrapper_module_activex_control
|
Stack-based buffer overflow in the DoModal function in the Dialog Wrapper Module ActiveX control (DlgWrapper.dll) before 8.4.166.0, as used by ICONICS OPC Enabled Gauge, Switch, and Vessel ActiveX, a…
|
NVD-CWE-Other
|
CVE-2006-6488
|
2017-07-29 10:29 |
2006-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267763
|
- |
|
phpbb_group
|
phpbb
|
Cross-site request forgery (CSRF) vulnerability in phpBB 2.0.21 allows remote authenticated users to send unauthorized messages as an arbitrary user via unspecified vectors. NOTE: the provenance of …
|
NVD-CWE-Other
|
CVE-2006-6508
|
2017-07-29 10:29 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267764
|
- |
|
dadaimc
|
dadaimc
|
dadaIMC .99.3 uses an insufficiently restrictive FilesMatch directive in the installed .htaccess file, which allows remote attackers to execute arbitrary PHP code by uploading files whose names conta…
|
NVD-CWE-Other
|
CVE-2006-6511
|
2017-07-29 10:29 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267765
|
- |
|
dadaimc
|
dadaimc
|
Successful exploitation requires that dadaIMC is installed into a shared environment.
|
NVD-CWE-Other
|
CVE-2006-6511
|
2017-07-29 10:29 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267766
|
- |
|
wikitimescale
|
twozero
|
Multiple cross-site scripting (XSS) vulnerabilities in WikiTimeScale TwoZero before 2.31 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors in the (1) forum module …
|
NVD-CWE-Other
|
CVE-2006-6522
|
2017-07-29 10:29 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267767
|
- |
|
ezhrs
|
hr_assist
|
SQL injection vulnerability in vdateUsr.asp in EzHRS HR Assist 1.05 and earlier allows remote attackers to execute arbitrary SQL commands via the password parameter. NOTE: The provenance of this inf…
|
NVD-CWE-Other
|
CVE-2006-6525
|
2017-07-29 10:29 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267768
|
- |
|
drupal
|
help_tip_module
|
SQL injection vulnerability in the Help Tip module before 4.7.x-1.0 for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2006-6530
|
2017-07-29 10:29 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267769
|
- |
|
drupal
|
help_tip_module
|
Cross-site scripting (XSS) vulnerability in the Help Tip module before 4.7.x-1.0 for Drupal allows remote attackers to inject arbitrary web script or HTML, and possibly obtain administrative access, …
|
NVD-CWE-Other
|
CVE-2006-6531
|
2017-07-29 10:29 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267770
|
- |
|
drupal
|
help_tip_module
|
This may lead to administrator access if certain conditions are met.
|
NVD-CWE-Other
|
CVE-2006-6531
|
2017-07-29 10:29 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|