264601
|
- |
|
hitachi
|
groupmax_world_wide_web groupmax_world_wide_web_desktop groupmax_world_wide_web_desktop_scheduler groupmax_world_wide_web_scheduler
|
Cross-site scripting (XSS) vulnerability in Groupmax World Wide Web, World Wide Web Desktop, World Wide Web for Scheduler, and Desktop for Scheduler, allows remote attackers to inject arbitrary web s…
|
NVD-CWE-Other
|
CVE-2006-1574
|
2017-07-20 10:30 |
2006-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264602
|
- |
|
hitachi
|
groupmax_world_wide_web groupmax_world_wide_web_desktop groupmax_world_wide_web_desktop_scheduler groupmax_world_wide_web_scheduler
|
Apply patch :
http://www.hitachi-support.com/security_e/vuls_e/HS06-005_e/index-e.html
|
NVD-CWE-Other
|
CVE-2006-1574
|
2017-07-20 10:30 |
2006-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264603
|
- |
|
mantis
|
mantis
|
Multiple cross-site scripting (XSS) vulnerabilities in view_all_set.php in Mantis 1.0.1, 1.0.0rc5, and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) start_day, (2)…
|
NVD-CWE-Other
|
CVE-2006-1577
|
2017-07-20 10:30 |
2006-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264604
|
- |
|
index_data_aps
|
keystone_digital_library_suite
|
Multiple SQL injection vulnerabilities in Keystone Digital Library Suite (DLS) 1.5.4 and earlier allow remote attackers to execute arbitrary SQL commands via the subject_type_id parameter in (1) the …
|
NVD-CWE-Other
|
CVE-2006-1578
|
2017-07-20 10:30 |
2006-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264605
|
- |
|
websina
|
bugzero
|
Multiple cross-site scripting (XSS) vulnerabilities in Bugzero 4.3.1 and other versions allow remote attackers to inject arbitrary web script or HTML via the (1) msg parameter in query.jsp and (2) en…
|
NVD-CWE-Other
|
CVE-2006-1580
|
2017-07-20 10:30 |
2006-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264606
|
- |
|
blanknberg
|
blanknberg
|
Directory traversal vulnerability in index.php in Blank'N'Berg 0.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the _path parameter.
|
NVD-CWE-Other
|
CVE-2006-1581
|
2017-07-20 10:30 |
2006-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264607
|
- |
|
blanknberg
|
blanknberg
|
Cross-site scripting (XSS) vulnerability in index.php in Blank'N'Berg 0.2 allows remote attackers to inject arbitrary web script or HTML via the _path parameter. NOTE: this might be resultant from t…
|
NVD-CWE-Other
|
CVE-2006-1582
|
2017-07-20 10:30 |
2006-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264608
|
- |
|
netbsd
|
netbsd
|
NetBSD 1.6 up to 3.0, when a user has "set record" in .mailrc with the default umask set, creates the record file with 0644 permissions, which allows local users to read the record file.
|
NVD-CWE-Other
|
CVE-2006-1587
|
2017-07-20 10:30 |
2006-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264609
|
- |
|
netbsd
|
netbsd
|
The bridge ioctl (if_bridge code) in NetBSD 1.6 through 3.0 does not clear sensitive memory before copying ioctl results to the requesting process, which allows local users to obtain portions of kern…
|
NVD-CWE-Other
|
CVE-2006-1588
|
2017-07-20 10:30 |
2006-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264610
|
- |
|
netbsd
|
netbsd
|
The elf_load_file function in NetBSD 2.0 through 3.0 allows local users to cause a denial of service (kernel crash) via an ELF interpreter that does not have a PT_LOAD section in its header, which tr…
|
NVD-CWE-Other
|
CVE-2006-1589
|
2017-07-20 10:30 |
2006-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|