265541
|
- |
|
noah_spurrier
|
upload_tool_for_php
|
Unrestricted file upload vulnerability in main_user.php in Upload Tool for PHP 1.0 allows remote attackers to upload and execute arbitrary files with executable extensions such as .php. NOTE: the pr…
|
NVD-CWE-Other
|
CVE-2006-7134
|
2017-07-29 10:29 |
2007-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265542
|
- |
|
noah_spurrier
|
upload_tool_for_php
|
Successful exploitation requires valid user credentials.
|
NVD-CWE-Other
|
CVE-2006-7134
|
2017-07-29 10:29 |
2007-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265543
|
- |
|
php_poll_creator
|
php_poll_creator
|
PHP remote file inclusion vulnerability in lib/functions.inc.php in PHP Poll Creator (phpPC) 1.04 allows remote attackers to execute arbitrary PHP code via a URL in the relativer_pfad parameter, a di…
|
NVD-CWE-Other
|
CVE-2006-7135
|
2017-07-29 10:29 |
2007-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265544
|
- |
|
novell
|
bordermanager
|
Novell BorderManager 3.8 SP4 generates the same ISAKMP cookies for the same source IP and port number during the same day, which allows remote attackers to conduct denial of service and replay attack…
|
NVD-CWE-Other
|
CVE-2006-7155
|
2017-07-29 10:29 |
2007-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265545
|
- |
|
novell
|
bordermanager
|
This vulnerability is addressed in the following vendor document:
https://secure-support.novell.com/KanisaPlatform/Publishing/201/3003139_f.SAL_Public.html
|
NVD-CWE-Other
|
CVE-2006-7155
|
2017-07-29 10:29 |
2007-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265546
|
- |
|
koan_software
|
mega_mall
|
Multiple SQL injection vulnerabilities in Koan Software Mega Mall allow remote attackers to execute arbitrary SQL commands via the (1) t, (2) productId, (3) sk, (4) x, or (5) so parameter to (a) prod…
|
CWE-89
SQL Injection
|
CVE-2006-7170
|
2017-07-29 10:29 |
2007-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265547
|
- |
|
koan_software
|
mega_mall
|
product_review.php in Koan Software Mega Mall allows remote attackers to obtain the installation path via a request with an empty value of the x[] parameter.
|
CWE-20
Improper Input Validation
|
CVE-2006-7171
|
2017-07-29 10:29 |
2007-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265548
|
- |
|
zoneo-soft
|
phptraffica
|
Multiple cross-site scripting (XSS) vulnerabilities in phpTrafficA before 1.2beta2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to keywords results in…
|
NVD-CWE-Other
|
CVE-2006-7209
|
2017-07-29 10:29 |
2007-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265549
|
- |
|
guliverkli
|
media_player_classic
|
Buffer overflow in the CFLICStream::_deltachunk function in FLICSource.cpp in Media Player Classic (MPC) 6.4.9.0 allows user-assisted remote attackers to execute arbitrary code via a crafted FLI file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2006-7222
|
2017-07-29 10:29 |
2007-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265550
|
- |
|
tmsnc
|
tmsnc
|
Format string vulnerability in ui.c in Textbased MSN Client (TMSNC) before 0.2.5 allows attackers to cause a denial of service and possibly execute arbitrary code via unknown attack vectors that caus…
|
NVD-CWE-Other
|
CVE-2005-4817
|
2017-07-29 10:29 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|