267191
|
- |
|
sun
|
storage_automated_diagnostic_environment
|
A package component in Sun Storage Automated Diagnostic Environment (StorADE) 2.4 uses world-writable permissions for certain critical files and directories, which allows local users to gain privileg…
|
NVD-CWE-Other
|
CVE-2006-2790
|
2017-07-20 10:31 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267192
|
- |
|
sun
|
storage_automated_diagnostic_environment
|
This vulnerability is addressed in the following product release:
Sun, Storage Automated Diagnostic Environment, 2.4 (for Solaris 8, 9 and 10) with patch 117654-60 or later.
|
NVD-CWE-Other
|
CVE-2006-2790
|
2017-07-20 10:31 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267193
|
- |
|
new-place
|
captivate
|
Cross-site scripting (XSS) vulnerability in gallery.php in Captivate 1.0 allows remote attackers to inject arbitrary web script or HTML via the page parameter, which is reflected in an error message.
|
CWE-79
Cross-site Scripting
|
CVE-2006-2796
|
2017-07-20 10:31 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267194
|
- |
|
toenda_software_development
|
toendacms
|
Cross-site scripting (XSS) vulnerability in content_footer.php in toendaCMS 0.7.0 allows remote attackers to inject arbitrary web scripts or HTML via the print_url variable. NOTE: the provenance of …
|
NVD-CWE-Other
|
CVE-2006-2799
|
2017-07-20 10:31 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267195
|
- |
|
toenda_software_development
|
toendacms
|
Successful exploitation requires that the user is running a browser that has not URL-encoded the request (e.g. Internet Explorer).
|
NVD-CWE-Other
|
CVE-2006-2799
|
2017-07-20 10:31 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267196
|
- |
|
unak
|
unak_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in Unak CMS 1.5 RC2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) u_a or (2) u_s parameters. NOTE: this mi…
|
CWE-79
Cross-site Scripting
|
CVE-2006-2800
|
2017-07-20 10:31 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267197
|
- |
|
unak
|
unak_cms
|
Multiple SQL injection vulnerabilities in Unak CMS 1.5 RC2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) u_a or (2) u_s parameters.
|
NVD-CWE-Other
|
CVE-2006-2801
|
2017-07-20 10:31 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267198
|
- |
|
goss
|
icm
|
Cross-site scripting (XSS) vulnerability in index.cfm in Goss Intelligent Content Management (iCM) 7.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the keyword param…
|
NVD-CWE-Other
|
CVE-2006-2804
|
2017-07-20 10:31 |
2006-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267199
|
- |
|
tekno.portal
|
tekno.portal
|
SQL injection vulnerability in bolum.php in tekno.Portal allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: the provenance of this information is unknown; the detai…
|
NVD-CWE-Other
|
CVE-2006-2817
|
2017-07-20 10:31 |
2006-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267200
|
- |
|
cpanel
|
cpanel
|
cPanel does not automatically synchronize the PHP open_basedir configuration directive between the main server and virtual hosts that share physical directories, which might allow a local user to byp…
|
NVD-CWE-Other
|
CVE-2006-2825
|
2017-07-20 10:31 |
2006-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|