265121
|
- |
|
usebb
|
usebb
|
SQL injection vulnerability in UseBB 1.0 RC1 and earlier allows remote attackers to execute arbitrary SQL commands via the member list search module.
|
NVD-CWE-Other
|
CVE-2006-2525
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265122
|
- |
|
smartisoft
|
phpbazar
|
PHP remote file inclusion vulnerability in classified_right.php in phpBazar 2.1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the language_dir parameter.
|
NVD-CWE-Other
|
CVE-2006-2528
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265123
|
- |
|
horizontal_shooter_bor openbor senile_team
|
horizontal_shooter_bor openbor beats_of_rage
|
Multiple format string vulnerabilities in (a) OpenBOR 2.0046 and earlier, (b) Beats of Rage (BOR) 1.0029 and earlier, and (c) Horizontal Shooter BOR (HOR) 2.0000 and earlier allow remote attackers to…
|
NVD-CWE-Other
|
CVE-2006-2537
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265124
|
- |
|
sybase
|
easerver
|
Sybase EAServer 5.0 for HP-UX Itanium, 5.2 for IBM AIX, HP-UX PA-RISC, Linux x86, and Sun Solaris SPARC, and 5.3 for Sun Solaris SPARC does not properly protect passwords when they are being entered …
|
NVD-CWE-Other
|
CVE-2006-2539
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265125
|
- |
|
ti_kan
|
xmcd
|
xmcdconfig in xmcd for Debian GNU/Linux 2.6-17.1 creates /var/lib/cddb and /var/lib/xmcd/discog with world writable permissions, which allows local users to cause a denial of service (disk consumptio…
|
NVD-CWE-Other
|
CVE-2006-2542
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265126
|
- |
|
bea
|
weblogic_server
|
A recommended admin password reset mechanism for BEA WebLogic Server 8.1, when followed before October 10, 2005, causes the administrator password to be stored in cleartext in the domain directory, w…
|
NVD-CWE-Other
|
CVE-2006-2546
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265127
|
- |
|
php
|
php
|
The cURL library (libcurl) in PHP 4.4.2 and 5.1.4 allows attackers to bypass safe mode and read files via a file:// request containing null characters.
|
NVD-CWE-Other
|
CVE-2006-2563
|
2017-07-20 10:31 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265128
|
- |
|
dian_gemilang
|
dgbook
|
SQL injection vulnerability in index.php in DGBook 1.0, with magic_quotes_gpc disabled, allows remote attackers to execute arbitrary SQL commands via the (1) name, (2) email, (3) homepage, (4) addres…
|
NVD-CWE-Other
|
CVE-2006-2573
|
2017-07-20 10:31 |
2006-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265129
|
- |
|
dian_gemilang
|
dgbook
|
Successful exploitation requires that "magic_quotes_gpc" is disabled.
|
NVD-CWE-Other
|
CVE-2006-2573
|
2017-07-20 10:31 |
2006-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265130
|
- |
|
esyndicat
|
esyndicat_directory
|
admin/cron.php in eSyndicat Directory 1.2, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to include arbitrary files and possibly execute arbitrary PHP cod…
|
NVD-CWE-Other
|
CVE-2006-2578
|
2017-07-20 10:31 |
2006-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|