265961
|
- |
|
clemens_wacha
|
php_iaddressbook
|
Cross-site scripting (XSS) vulnerability in PHP iAddressBook before 0.95 allows remote attackers to inject arbitrary web script or HTML via the cat_name parameter, related to adding a category. (cate…
|
NVD-CWE-Other
|
CVE-2006-4442
|
2011-03-8 11:40 |
2006-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265962
|
- |
|
x.org
|
emu-linux-x87-xlibs x11r6 x11r7 xdm xf86dga xinit xload xorg-server xterm
|
X.Org and XFree86, including libX11, xdm, xf86dga, xinit, xload, xtrans, and xterm, does not check the return values for setuid and seteuid calls when attempting to drop privileges, which might allow…
|
NVD-CWE-Other
|
CVE-2006-4447
|
2011-03-8 11:40 |
2006-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265963
|
- |
|
cj_design
|
cj_tag_board
|
Direct static code injection vulnerability in CJ Tag Board 3.0 allows remote attackers to execute arbitrary PHP code via the (1) User-Agent HTTP header in tag.php, which is executed by all.php, and (…
|
NVD-CWE-Other
|
CVE-2006-4451
|
2011-03-8 11:40 |
2006-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265964
|
- |
|
phpecard
|
phpecard
|
PHP remote file inclusion vulnerability in index.php in phpECard 2.1.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the include_path parameter. NOTE: the provenance…
|
NVD-CWE-Other
|
CVE-2006-4457
|
2011-03-8 11:40 |
2006-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265965
|
- |
|
sybase
|
financial_fusion_consumer_banking_solution
|
Unspecified vulnerability in Sybase/Financial Fusion Consumer Banking Suite versions before 20060706 has unknown impact and remote attack vectors.
|
NVD-CWE-Other
|
CVE-2006-3667
|
2011-03-8 11:39 |
2006-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265966
|
- |
|
hyper_estraier
|
hyper_estraier
|
Cross-site request forgery (CSRF) vulnerability in the communicate function in estmaster.c for Hyper Estraier before 1.3.3 allows remote attackers to perform unauthorized actions as other users via u…
|
NVD-CWE-Other
|
CVE-2006-3671
|
2011-03-8 11:39 |
2006-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265967
|
- |
|
hyper_estraier
|
hyper_estraier
|
This vulnerability is addressed in the following product release:
Hyper Estraier, Hyper Estraier, 1.3.3
|
NVD-CWE-Other
|
CVE-2006-3671
|
2011-03-8 11:39 |
2006-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265968
|
- |
|
hp
|
openvms
|
Unspecified vulnerability in [SYSEXE]SMPUTIL.EXE in HP OpenVMS 7.3-2 allows local users and "remote users" to cause a denial of service (crash).
|
NVD-CWE-Other
|
CVE-2006-3686
|
2011-03-8 11:39 |
2006-07-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265969
|
- |
|
citrix
|
metaframe metaframe_presentation_server presentation_server
|
Citrix MetaFrame up to XP 1.0 Feature 1, except when running on Windows Server 2003, installs a registry key with an insecure ACL, which allows remote authenticated users to gain privileges.
|
NVD-CWE-Other
|
CVE-2006-3779
|
2011-03-8 11:39 |
2006-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265970
|
- |
|
krusader
|
krusader
|
Krusader 1.50-beta1 up to 1.70.0 stores passwords for remote connections in cleartext in the bookmark file (krbookmarks.xml), which allows attackers to steal passwords by obtaining the file.
|
NVD-CWE-Other
|
CVE-2006-3816
|
2011-03-8 11:39 |
2006-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|