265231
|
- |
|
biba_software
|
seleniumserver_ftp_server
|
SeleniumServer FTP Server 1.0, and possibly earlier, stores user passwords in plaintext in the Servers directory, which allows attackers to obtain passwords by reading the file. NOTE: the provenance…
|
CWE-310
Cryptographic Issues
|
CVE-2006-5982
|
2017-07-20 10:34 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265232
|
- |
|
sun
|
jdk jre
|
Unspecified vulnerability in the Java Runtime Environment (JRE) Swing library in JDK and JRE 5.0 Update 7 and earlier allows attackers to obtain certain information via unknown attack vectors, relate…
|
NVD-CWE-Other
|
CVE-2006-6009
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265233
|
- |
|
mginternet
|
car_site_manager
|
Cross-site scripting (XSS) vulnerability in csm/asp/listings.asp in MGinternet Car Site Manager (CSM) allows remote attackers to inject arbitrary web script or HTML via the p parameter. NOTE: the pr…
|
NVD-CWE-Other
|
CVE-2006-6012
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265234
|
- |
|
f-art_agency
|
blog_cms
|
Cross-site scripting (XSS) vulnerability in list.php in BLOG:CMS 4.1.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the FADDR parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2006-6035
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265235
|
- |
|
emreturk
|
openhuman
|
SQL injection vulnerability in OpenHuman before 1.0 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2006-6036
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265236
|
- |
|
oliver
|
oliver
|
PHP file inclusion vulnerability in loginform-inc.php in Oliver (formerly Webshare) 1.2.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a UN…
|
NVD-CWE-Other
|
CVE-2006-6043
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265237
|
- |
|
oliver
|
oliver
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2006-6043
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265238
|
- |
|
epic_designs
|
eggblog
|
Multiple cross-site scripting (XSS) vulnerabilities in eggblog 3.1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) edit parameter to (a) admin/articles.php or (b) admin/co…
|
CWE-79
Cross-site Scripting
|
CVE-2006-6046
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265239
|
- |
|
netepi_case_manager
|
netepi_case_manager
|
NetEpi Case Manager before 0.98 generates different error messages depending on whether or not a username is valid, which allows remote attackers to enumerate valid usernames.
|
NVD-CWE-Other
|
CVE-2006-6052
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265240
|
- |
|
linux
|
linux_kernel
|
The Linux kernel 2.6.x up to 2.6.18, and possibly other versions, on Fedora Core 6 and possibly other operating systems, allows local users to cause a denial of service (crash) via a malformed gfs2 f…
|
NVD-CWE-Other
|
CVE-2006-6057
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|