267501
|
- |
|
achievo
|
achievo
|
SQL injection vulnerability in the employees node (class.employee.inc) in Achievo 1.1.0 and earlier and 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the atkselector p…
|
NVD-CWE-Other
|
CVE-2006-2688
|
2017-07-20 10:31 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267502
|
- |
|
eva-web
|
eva-web
|
Multiple cross-site scripting (XSS) vulnerabilities in EVA-Web 2.1.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) debut_image parameter in (a) article-album.p…
|
NVD-CWE-Other
|
CVE-2006-2689
|
2017-07-20 10:31 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267503
|
- |
|
amule
|
amule
|
Unspecified "information leakage" vulnerabilities in aMuleWeb for AMule before 2.1.2 allow remote attackers to access arbitrary images, including dynamically generated images, via unknown vectors.
|
NVD-CWE-Other
|
CVE-2006-2691
|
2017-07-20 10:31 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267504
|
- |
|
amule
|
amule
|
Successful exploitation requires that the full pathname of the file is known.
This vulnerability is addressed in the following product release:
aMule, aMule, 2.1.2
|
NVD-CWE-Other
|
CVE-2006-2691
|
2017-07-20 10:31 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267505
|
- |
|
dgnews
|
dgnews
|
admin/upprocess.php in DGNews 1.5 and earlier allows remote attackers to execute arbitrary code by uploading scripts with arbitrary extensions to the img directory.
|
NVD-CWE-Other
|
CVE-2006-2695
|
2017-07-20 10:31 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267506
|
- |
|
dgnews
|
dgnews
|
Successful exploitation requires access to the administration section.
|
NVD-CWE-Other
|
CVE-2006-2695
|
2017-07-20 10:31 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267507
|
- |
|
geeklog
|
geeklog
|
SQL injection vulnerability in Geeklog 1.4.0sr2 and earlier allows remote attackers to execute arbitrary SQL commands via unknown vectors related to story submission.
|
NVD-CWE-Other
|
CVE-2006-2701
|
2017-07-20 10:31 |
2006-05-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267508
|
- |
|
secure_elements
|
c5_enterprise_vulnerability_management
|
Secure Elements Class 5 AVR server and client (aka C5 EVM) before 2.8.1 send messages in cleartext, which allows remote attackers to read sensitive vulnerability information.
|
NVD-CWE-Other
|
CVE-2006-2704
|
2017-07-20 10:31 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267509
|
- |
|
secure_elements
|
c5_enterprise_vulnerability_management
|
The vulnerabilities and security issues have been fixed in C5 EVM version 2.8.1.
|
NVD-CWE-Other
|
CVE-2006-2704
|
2017-07-20 10:31 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267510
|
- |
|
secure_elements
|
c5_enterprise_vulnerability_management
|
Secure Elements Class 5 AVR server (aka C5 EVM) before 2.8.1 allows remote attackers to cause an unspecified denial of service via a large number of forged client registration messages.
|
NVD-CWE-Other
|
CVE-2006-2705
|
2017-07-20 10:31 |
2006-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|