264571
|
- |
|
spip
|
spip
|
SQL injection vulnerability in spip_acces_doc.php3 in SPIP 1.8.2g and earlier allows remote attackers to execute arbitrary SQL commands via the file parameter.
|
NVD-CWE-Other
|
CVE-2006-0626
|
2017-07-20 10:29 |
2006-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264572
|
- |
|
erik_c._thauvin
|
mailback
|
CRLF injection vulnerability in mailback.pl in Erik C. Thauvin mailback allows remote attackers to use mailback as a "spam proxy" by modifying mail headers, including recipient e-mail addresses, via …
|
NVD-CWE-Other
|
CVE-2006-0631
|
2017-07-20 10:29 |
2006-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264573
|
- |
|
sun
|
java_system_directory_server
|
LDAP service in Sun Java System Directory Server 5.2, running on Linux and possibly other platforms, allows remote attackers to cause a denial of service (memory allocation error) via an LDAP packet …
|
NVD-CWE-Other
|
CVE-2006-0647
|
2017-07-20 10:29 |
2006-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264574
|
- |
|
dataparksearch
|
dataparksearch
|
Cross-site scripting (XSS) vulnerability in DataparkSearch before 4.37 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2006-0649
|
2017-07-20 10:29 |
2006-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264575
|
- |
|
vwdev
|
vwdev
|
SQL injection vulnerability in index.php in vwdev allows remote attackers to execute arbitrary SQL commands via the UID parameter in the definition Page.
|
NVD-CWE-Other
|
CVE-2006-0651
|
2017-07-20 10:29 |
2006-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264576
|
- |
|
whmcompletesolution
|
whmcompletesolution
|
WHMCompleteSolution (WHMCS) before 2.3 assigns incorrect permissions to "resellers", which allows remote authenticated users to perform privileged actions or obtain sensitive information. NOTE: this…
|
NVD-CWE-Other
|
CVE-2006-0652
|
2017-07-20 10:29 |
2006-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264577
|
- |
|
softcomplex
|
php_event_calendar
|
Cross-site scripting (XSS) vulnerability in Softcomplex PHP Event Calendar 1.5 allows remote authenticated users to inject arbitrary web script or HTML, and corrupt data, via the (1) username and (2)…
|
NVD-CWE-Other
|
CVE-2006-0657
|
2017-07-20 10:29 |
2006-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264578
|
- |
|
scriptme
|
sme_blog_host sme_gb_host
|
Cross-site scripting (XSS) vulnerability in Scriptme SmE GB Host 1.21 and SmE Blog Host allows remote attackers to inject arbitrary web script or HTML via the BBcode url tag.
|
NVD-CWE-Other
|
CVE-2006-0661
|
2017-07-20 10:29 |
2006-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264579
|
- |
|
ibm
|
lotus_domino_inotes_client
|
Cross-site scripting (XSS) vulnerability in Lotus Domino iNotes Client 6.5.4 allows remote attackers to inject arbitrary web script or HTML via email with attached html files, which are directly rend…
|
NVD-CWE-Other
|
CVE-2006-0662
|
2017-07-20 10:29 |
2006-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264580
|
- |
|
ibm
|
lotus_domino_inotes_client
|
Multiple cross-site scripting (XSS) vulnerabilities in Lotus Domino iNotes Client 6.5.4 and 7.0 allow remote attackers to inject arbitrary web script or HTML via (1) an email subject; (2) an encoded …
|
CWE-79
Cross-site Scripting
|
CVE-2006-0663
|
2017-07-20 10:29 |
2006-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|