266601
|
- |
|
edgewall_software
|
trac
|
Cross-site request forgery (CSRF) vulnerability in Edgewall Trac 0.10 and earlier allows remote attackers to perform unauthorized actions as other users via unknown vectors.
|
NVD-CWE-Other
|
CVE-2006-5878
|
2017-07-20 10:34 |
2006-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266602
|
- |
|
edgewall_software
|
trac
|
This vulnerability is addressed in the following product release:
Edgewall Software, Trac, 0.10.1
|
NVD-CWE-Other
|
CVE-2006-5878
|
2017-07-20 10:34 |
2006-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266603
|
- |
|
linksys broadcom
|
wpc300n_wireless-n_notebook_adapter_driver bcmwl5.sys_wireless_device_driver
|
Stack-based buffer overflow in the Broadcom BCMWL5.SYS wireless device driver 3.50.21.10, as used in Cisco Linksys WPC300N Wireless-N Notebook Adapter before 4.100.15.5 and other products, allows rem…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2006-5882
|
2017-07-20 10:34 |
2006-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266604
|
- |
|
linksys broadcom
|
wpc300n_wireless-n_notebook_adapter_driver bcmwl5.sys_wireless_device_driver
|
The affected Linksys product has an updated driver in response to this vulnerability:
Linksys, WPC300N Wireless-N Notebook Adapter Driver, 4.100.15.5
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2006-5882
|
2017-07-20 10:34 |
2006-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266605
|
- |
|
lucas_rodriguez_san_pedro
|
yet_another_news_system
|
Multiple SQL injection vulnerabilities in the login_user function in yans.func.php in Lucas Rodriguez San Pedro Yet Another News System (YANS) 0.2b allow remote attackers to execute arbitrary SQL com…
|
NVD-CWE-Other
|
CVE-2006-5908
|
2017-07-20 10:34 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266606
|
- |
|
vallheru
|
vallheru
|
Multiple SQL injection vulnerabilities in mail.php in Vallheru before 1.0.7 allow remote attackers to execute arbitrary SQL commands via the (1) id or (2) to parameters. NOTE: some of these details …
|
NVD-CWE-Other
|
CVE-2006-5926
|
2017-07-20 10:34 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266607
|
- |
|
kahua
|
kahua
|
Kahua before 0.7, when running multiple applications under a single supervisor, grants application access on the basis of username instead of username and database name, which allows remote authentic…
|
NVD-CWE-Other
|
CVE-2006-5932
|
2017-07-20 10:34 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266608
|
- |
|
shopsystems
|
shopsystems
|
SQL injection vulnerability in index.php in ShopSystems 4.0 and earlier allows remote attackers to execute arbitrary SQL commands via the sessid parameter.
|
NVD-CWE-Other
|
CVE-2006-5935
|
2017-07-20 10:34 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266609
|
- |
|
grisoft
|
avg_antivirus
|
Grisoft AVG Anti-Virus before 7.1.407 has unknown impact and remote attack vectors involving an uninitialized variable and a crafted CAB file.
|
CWE-20
Improper Input Validation
|
CVE-2006-5938
|
2017-07-20 10:34 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266610
|
- |
|
grisoft
|
avg_antivirus
|
Grisoft AVG Anti-Virus before 7.1.407 allows remote attackers to cause a denial of service (crash) via a crafted DOC file that triggers a divide-by-zero error. NOTE: some of these details are obtain…
|
CWE-369
Divide By Zero
|
CVE-2006-5939
|
2017-07-20 10:34 |
2006-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|