266501
|
- |
|
phpbb_group
|
phpbb_advanced_guestbook
|
SQL injection vulnerability in guestbook.php in Advanced Guestbook 2.4 for phpBB allows remote attackers to execute arbitrary SQl commands via the entry parameter.
|
NVD-CWE-Other
|
CVE-2006-7077
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266502
|
- |
|
rigter_portal_system
|
rigter_portal_system
|
Rigter Portal System (RPS) 1.0, 2.0, and 3.0 allows remote attackers to bypass authentication and upload arbitrary files via direct requests to (1) adm/photos/images.php and (2) adm/down/files.php.
|
NVD-CWE-Other
|
CVE-2006-7082
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266503
|
- |
|
rigter_portal_system
|
rigter_portal_system
|
Directory traversal vulnerability in index.php in Rigter Portal System (RPS) 1.0, 2.0, and 3.0 allows remote attackers to read arbitrary files via ".." sequences in the id parameter.
|
NVD-CWE-Other
|
CVE-2006-7083
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266504
|
- |
|
rigter_portal_system
|
rigter_portal_system
|
Rigter Portal System (RPS) 1.0, 2.0, and 3.0 allows remote attackers to add arbitrary content and conduct XSS attacks via a direct request to add_art.php. NOTE: this issue was originally reported as…
|
NVD-CWE-Other
|
CVE-2006-7085
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266505
|
- |
|
simple_php_forum
|
simple_php_forum
|
Multiple SQL injection vulnerabilities in Simple PHP Forum before 0.4 allow remote attackers to execute arbitrary SQL commands via the username parameter to (1) logon_user.php and (2) update_profile.…
|
NVD-CWE-Other
|
CVE-2006-7088
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266506
|
- |
|
ban
|
ban
|
SQL injection vulnerability in connexion.php in Ban 0.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2006-7089
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266507
|
- |
|
phpbb_security
|
phpbb_security
|
PHP remote file inclusion vulnerability in phpbb_security.php in phpBB Security 1.0.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the php_root_path parameter.
|
CWE-94
Code Injection
|
CVE-2006-7090
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266508
|
- |
|
klink
|
dim3
|
Integer signedness error in the network_receive_packet function in socket.c in dimension 3 engine (dim3) 1.5 and earlier allows remote attackers to cause a denial of service (application crash) and p…
|
NVD-CWE-Other
|
CVE-2006-7095
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266509
|
- |
|
klink
|
dim3
|
Buffer overflow in the network_host_handle_join function in host.c in dimension 3 engine (dim3) 1.5 and earlier allows remote attackers to cause a denial of service (application crash) and possibly e…
|
NVD-CWE-Other
|
CVE-2006-7096
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266510
|
- |
|
debian
|
apache
|
The Debian GNU/Linux 033_-F_NO_SETSID patch for the Apache HTTP Server 1.3.34-4 does not properly disassociate httpd from a controlling tty when httpd is started interactively, which allows local use…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-7098
|
2017-07-29 10:29 |
2007-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|