270641
|
- |
|
xerox
|
workcentre
|
Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 do not block the postgres port (5432/tcp), which has unknown impact and remote attac…
|
NVD-CWE-Other
|
CVE-2006-6469
|
2008-09-6 06:14 |
2006-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270642
|
- |
|
xerox
|
workcentre
|
The SNMP Agent in Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 returns no error for a non-writable object, which has unknown impa…
|
NVD-CWE-Other
|
CVE-2006-6470
|
2008-09-6 06:14 |
2006-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270643
|
- |
|
xerox
|
workcentre
|
Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 use weak permissions for certain files, which allows unspecified file access.
|
NVD-CWE-Other
|
CVE-2006-6471
|
2008-09-6 06:14 |
2006-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270644
|
- |
|
xerox
|
workcentre
|
The httpd.conf file in Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 configures port 443 to be always active, which has unknown im…
|
NVD-CWE-Other
|
CVE-2006-6472
|
2008-09-6 06:14 |
2006-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270645
|
- |
|
xerox
|
workcentre
|
Multiple unspecified vulnerabilities in Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 have unknown impact and attack vectors, rela…
|
NVD-CWE-Other
|
CVE-2006-6473
|
2008-09-6 06:14 |
2006-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270646
|
- |
|
mantis
|
mantis
|
Mantis before 1.1.0a2 sets the default value of $g_bug_reminder_threshold to "reporter" instead of a more privileged role, which has unknown impact and attack vectors, possibly related to frequency o…
|
NVD-CWE-Other
|
CVE-2006-6515
|
2008-09-6 06:14 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270647
|
- |
|
drupal
|
chatroom_module
|
The Chatroom Module before 4.7.x.-1.0 for Drupal displays private messages in a chatroom's last messages overview, which allows remote attackers to obtain sensitive information by reading the overvie…
|
NVD-CWE-Other
|
CVE-2006-6529
|
2008-09-6 06:14 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270648
|
- |
|
oscommerce
|
oscommerce
|
Multiple cross-site scripting (XSS) vulnerabilities in osCommerce 3.0a3 allow remote attackers to inject arbitrary web script or HTML via the (1) set parameter to admin/modules.php, the (2) selected_…
|
NVD-CWE-Other
|
CVE-2006-6534
|
2008-09-6 06:14 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270649
|
- |
|
cilem
|
cilem_haber
|
Cross-site scripting (XSS) vulnerability in hata.asp in Cilem Haber Free Edition allows remote attackers to inject arbitrary web script or HTML via the hata parameter. NOTE: The provenance of this i…
|
NVD-CWE-Other
|
CVE-2006-6536
|
2008-09-6 06:14 |
2006-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270650
|
- |
|
linux-ftpd-ssl
|
linux-ftpd-ssl
|
ftpd in linux-ftpd 0.17, and possibly other versions, performs a chdir before setting the UID, which allows local users to bypass intended access restrictions by redirecting their home directory to a…
|
NVD-CWE-Other
|
CVE-2006-5778
|
2008-09-6 06:13 |
2006-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|