266621
|
- |
|
renasoft
|
netjetserver
|
adm_lgn_admin.asp in Renasoft NetJetServer 2.5.3.939, and possibly earlier, does not properly perform login authentication, which allows remote attackers to obtain administrative privileges. NOTE: t…
|
NVD-CWE-Other
|
CVE-2006-5980
|
2017-07-20 10:34 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266622
|
- |
|
biba_software
|
seleniumserver_ftp_server
|
Multiple directory traversal vulnerabilities in SeleniumServer FTP Server 1.0, and possibly earlier, allow remote attackers to list arbitrary directories, read arbitrary files, and upload arbitrary f…
|
CWE-22
Path Traversal
|
CVE-2006-5981
|
2017-07-20 10:34 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266623
|
- |
|
biba_software
|
seleniumserver_ftp_server
|
SeleniumServer FTP Server 1.0, and possibly earlier, stores user passwords in plaintext in the Servers directory, which allows attackers to obtain passwords by reading the file. NOTE: the provenance…
|
CWE-310
Cryptographic Issues
|
CVE-2006-5982
|
2017-07-20 10:34 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266624
|
- |
|
sun
|
jdk jre
|
Unspecified vulnerability in the Java Runtime Environment (JRE) Swing library in JDK and JRE 5.0 Update 7 and earlier allows attackers to obtain certain information via unknown attack vectors, relate…
|
NVD-CWE-Other
|
CVE-2006-6009
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266625
|
- |
|
mginternet
|
car_site_manager
|
Cross-site scripting (XSS) vulnerability in csm/asp/listings.asp in MGinternet Car Site Manager (CSM) allows remote attackers to inject arbitrary web script or HTML via the p parameter. NOTE: the pr…
|
NVD-CWE-Other
|
CVE-2006-6012
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266626
|
- |
|
f-art_agency
|
blog_cms
|
Cross-site scripting (XSS) vulnerability in list.php in BLOG:CMS 4.1.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the FADDR parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2006-6035
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266627
|
- |
|
emreturk
|
openhuman
|
SQL injection vulnerability in OpenHuman before 1.0 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2006-6036
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266628
|
- |
|
oliver
|
oliver
|
PHP file inclusion vulnerability in loginform-inc.php in Oliver (formerly Webshare) 1.2.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a UN…
|
NVD-CWE-Other
|
CVE-2006-6043
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266629
|
- |
|
oliver
|
oliver
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2006-6043
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266630
|
- |
|
epic_designs
|
eggblog
|
Multiple cross-site scripting (XSS) vulnerabilities in eggblog 3.1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) edit parameter to (a) admin/articles.php or (b) admin/co…
|
CWE-79
Cross-site Scripting
|
CVE-2006-6046
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|