267301
|
- |
|
php_fusion
|
php_fusion
|
Successful exploitation requires that "register_globals" and "magic_quotes_gpc" are disabled.
This vulnerability is addressed in the following product release:
PHP-Fusion, PHP_Fusion, 6.01.5
|
NVD-CWE-Other
|
CVE-2006-4673
|
2017-07-20 10:33 |
2006-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267302
|
- |
|
newsgator
|
feeddemon
|
Multiple cross-site scripting (XSS) vulnerabilities in NewsGator FeedDemon before 2.0.0.25 allow remote attackers to inject arbitrary web script or HTML via an Atom 1.0 feed, as demonstrated by certa…
|
NVD-CWE-Other
|
CVE-2006-4710
|
2017-07-20 10:33 |
2006-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267303
|
- |
|
newsgator
|
feeddemon
|
This vulnerability is addressed in the following product release:
NewsGator, FeedDemon, 2.0.0.25
|
NVD-CWE-Other
|
CVE-2006-4710
|
2017-07-20 10:33 |
2006-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267304
|
- |
|
korviblog
|
korviblog
|
Multiple cross-site scripting (XSS) vulnerabilities in livre_or.php in KorviBlog 1.3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) prenom, (2) emailFrom, or (3) body par…
|
NVD-CWE-Other
|
CVE-2006-4718
|
2017-07-20 10:33 |
2006-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267305
|
- |
|
adobe
|
coldfusion
|
Unspecified vulnerability in the ColdFusion Flash Remoting Gateway in Adobe ColdFusion MX 7 and 7.01 allows remote attackers to cause a denial of service (infinite loop) via unspecified vectors invol…
|
NVD-CWE-Other
|
CVE-2006-4724
|
2017-07-20 10:33 |
2006-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267306
|
- |
|
adobe
|
coldfusion
|
Adobe ColdFusion MX 7 and 7.01 allows local users to bypass security restrictions and call components (CFC) within a sandbox from CFML templates that are located outside of the sandbox.
|
NVD-CWE-Other
|
CVE-2006-4725
|
2017-07-20 10:33 |
2006-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267307
|
- |
|
adobe
|
coldfusion
|
Cross-site scripting (XSS) vulnerability in Adobe ColdFusion MX 6.1 through 7.02 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving a ColdFusion error pa…
|
NVD-CWE-Other
|
CVE-2006-4726
|
2017-07-20 10:33 |
2006-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267308
|
- |
|
tumbleweed
|
email_firewall
|
Cross-site scripting (XSS) vulnerability in emfadmin/statusView.do in Tumbleweed EMF Administration Module 6.2.2 Build 4123, and possibly other versions before 6.3.2, allows remote attackers to injec…
|
CWE-79
Cross-site Scripting
|
CVE-2006-4727
|
2017-07-20 10:33 |
2006-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267309
|
- |
|
benjamin_pasero_and_tobias_eichert
|
rssowl
|
Multiple cross-site scripting (XSS) vulnerabilities in Benjamin Pasero and Tobias Eichert RSSOwl allow remote attackers to inject arbitrary web script or HTML via a web feed, as demonstrated by certa…
|
NVD-CWE-Other
|
CVE-2006-4760
|
2017-07-20 10:33 |
2006-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267310
|
- |
|
luke_hutteman
|
sharpreader
|
Multiple cross-site scripting (XSS) vulnerabilities in Luke Hutteman SharpReader allow remote attackers to inject arbitrary web script or HTML via a web feed, as demonstrated by certain test cases of…
|
NVD-CWE-Other
|
CVE-2006-4761
|
2017-07-20 10:33 |
2006-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|