267001
|
- |
|
uebimiau
|
uebimiau
|
Multiple cross-site scripting (XSS) vulnerabilities in UebiMiau Webmail 2.7.10, and 2.7.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) f_user parameter in ind…
|
NVD-CWE-Other
|
CVE-2006-3305
|
2017-07-20 10:32 |
2006-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267002
|
- |
|
zoid_technologies
|
project_eros_bbsengine
|
Cross-site scripting (XSS) vulnerability in the preparestring function in lib/common.php in Project EROS bbsengine before 20060501-0142-jam, and possibly earlier versions dating back to 2006-02-23, m…
|
CWE-79
Cross-site Scripting
|
CVE-2006-3306
|
2017-07-20 10:32 |
2006-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267003
|
- |
|
zoid_technologies
|
project_eros_bbsengine
|
Multiple SQL injection vulnerabilities in Project EROS bbsengine before bbsengine-20060429-1550-jam allow remote attackers to execute arbitrary SQL commands via (1) unspecified parameters in the php/…
|
NVD-CWE-Other
|
CVE-2006-3307
|
2017-07-20 10:32 |
2006-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267004
|
- |
|
zoid_technologies
|
project_eros_bbsengine
|
Unspecified vulnerability in the wpprop code for Project EROS bbsengine before 20060622-0315 has unknown impact and remote attack vectors via [img] tags, possibly cross-site scripting (XSS).
|
NVD-CWE-Other
|
CVE-2006-3308
|
2017-07-20 10:32 |
2006-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267005
|
- |
|
rahnemaco
|
rahnemaco
|
PHP remote file inclusion vulnerability in page.php in an unspecified RahnemaCo.com product, possibly eShop, allows remote attackers to execute arbitrary PHP code via a URL in the osCsid parameter.
|
NVD-CWE-Other
|
CVE-2006-3315
|
2017-07-20 10:32 |
2006-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267006
|
- |
|
spiffyjr
|
phpraid
|
Multiple PHP remote file inclusion vulnerabilities in phpRaid 3.0.5 allow remote attackers to execute arbitrary code via a URL in the phpraid_dir parameter to (1) logs.php and (2) users.php, a differ…
|
NVD-CWE-Other
|
CVE-2006-3316
|
2017-07-20 10:32 |
2006-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267007
|
- |
|
2enetworx
|
openforum
|
Multiple cross-site scripting (XSS) vulnerabilities in openforum.asp in OpenForum 1.2 Beta and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) ofdisp and (2) ofmsgid…
|
NVD-CWE-Other
|
CVE-2006-3321
|
2017-07-20 10:32 |
2006-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267008
|
- |
|
joesph_leung
|
quickzip
|
Directory traversal vulnerability in QuickZip 3.06.3 allows remote user-assisted attackers to overwrite arbitrary files or directories via .. (dot dot) sequences in filenames within (1) TAR,(2) GZ, a…
|
NVD-CWE-Other
|
CVE-2006-3326
|
2017-07-20 10:32 |
2006-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267009
|
- |
|
e-cbd.biz
|
custom_dating_biz_dating_script
|
Cross-site scripting (XSS) vulnerability in Custom dating biz dating script 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) sn20_special_cases parameter ("Special Cases…
|
NVD-CWE-Other
|
CVE-2006-3327
|
2017-07-20 10:32 |
2006-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267010
|
- |
|
starflow_software
|
hostflow
|
new_ticket.cgi in Hostflow 2.2.1-15 allows remote attackers to steal and replay authentication credentials via an IMG tag in the desc parameter ("Ticket Description" field) that points to a URL that …
|
NVD-CWE-Other
|
CVE-2006-3328
|
2017-07-20 10:32 |
2006-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|