267231
|
- |
|
phpmyadmin
|
phpmyadmin
|
Cross-site scripting (XSS) vulnerability in index.php in phpMyAdmin 2.8.0.3, 2.8.0.2, 2.8.1-dev, and 2.9.0-dev allows remote attackers to inject arbitrary web script or HTML via the lang parameter.
|
NVD-CWE-Other
|
CVE-2006-2031
|
2017-07-20 10:31 |
2006-04-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267232
|
- |
|
amplecom
|
ampleshop
|
Multiple SQL injection vulnerabilities in ampleShop 2.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) RecordID parameter in (a) Customeraddresses_RecordAction.cfm a…
|
NVD-CWE-Other
|
CVE-2006-2038
|
2017-07-20 10:31 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267233
|
- |
|
ubertec
|
help_center_live
|
Multiple SQL injection vulnerabilities in the osTicket module in Help Center Live before 2.1.0 allow remote attackers to execute arbitrary SQL commands via unknown vectors.
|
NVD-CWE-Other
|
CVE-2006-2039
|
2017-07-20 10:31 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267234
|
- |
|
phpwebgallery
|
phpwebgallery
|
PhpWebGallery before 1.6.0RC1 allows remote attackers to obtain arbitrary pictures via a request to picture.php without specifying the cat parameter. NOTE: the provenance of this information is unkn…
|
NVD-CWE-Other
|
CVE-2006-2041
|
2017-07-20 10:31 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267235
|
- |
|
adobe
|
dreamweaver
|
Adobe Dreamweaver 8 before 8.0.2 and MX 2004 can generate code that allows SQL injection attacks in the (1) ColdFusion, (2) PHP mySQL, (3) ASP, (4) ASP.NET, and (5) JSP server models.
|
NVD-CWE-Other
|
CVE-2006-2042
|
2017-07-20 10:31 |
2006-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267236
|
- |
|
adobe
|
dreamweaver
|
This vulnerability affects all versions of Adobe, Dreamweaver, 8.0 before 8.0.2
This vulnerability is addressed in the following product releases:
Adobe, Dreamweaver, 8.0.2
Code update for Macrome…
|
NVD-CWE-Other
|
CVE-2006-2042
|
2017-07-20 10:31 |
2006-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267237
|
- |
|
application_dynamics
|
cartweaver_coldfusion
|
Application Dynamics Cartweaver ColdFusion 2.16.11 and earlier allows remote attackers to obtain sensitive information via an invalid (1) secondary, (2) PageNum_Results, (3) category, or (4) keywords…
|
NVD-CWE-Other
|
CVE-2006-2047
|
2017-07-20 10:31 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267238
|
- |
|
quickestore
|
quickestore
|
Multiple SQL injection vulnerabilities in QuickEStore 7.9 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the OrderID parameter in (a) shipping.cfm and (b) checkout.cfm, …
|
NVD-CWE-Other
|
CVE-2006-2053
|
2017-07-20 10:31 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267239
|
- |
|
3com
|
3c16486
|
3Com Baseline Switch 2848-SFP Plus Model #3C16486 with firmware before 1.0.2.0 allows remote attackers to cause a denial of service (unstable operation) via long DHCP packets.
|
NVD-CWE-Other
|
CVE-2006-2054
|
2017-07-20 10:31 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267240
|
- |
|
3com
|
3c16486
|
Update to firmware version 1.0.2.0.
http://www.3com.com/products/en_...e&order=desc&prodcat=all
|
NVD-CWE-Other
|
CVE-2006-2054
|
2017-07-20 10:31 |
2006-04-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|