264931
|
- |
|
caloris_planitia_technologies
|
e-school_management_system
|
A new version of School Management System was released on May 28, 2006.
|
NVD-CWE-Other
|
CVE-2006-1418
|
2017-07-20 10:30 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264932
|
- |
|
web-app.org
|
webapp
|
Multiple cross-site scripting (XSS) vulnerabilities in WebAPP 0.9.9.3.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) action, (2) id, (3) num, (4) board, (5) c…
|
NVD-CWE-Other
|
CVE-2006-1427
|
2017-07-20 10:30 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264933
|
- |
|
coinsoft_technologies
|
phpcoin
|
Multiple cross-site scripting (XSS) vulnerabilities in phpCOIN 1.2.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the fs parameter to (1) mod.php or (2) mod_print.php.
|
NVD-CWE-Other
|
CVE-2006-1428
|
2017-07-20 10:30 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264934
|
- |
|
fusionzone
|
classifiedzone
|
Cross-site scripting (XSS) vulnerability in accountlogon.cfm in classifiedZONE 1.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the rtn parameter.
|
NVD-CWE-Other
|
CVE-2006-1429
|
2017-07-20 10:30 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264935
|
- |
|
controlzx
|
hms
|
Multiple cross-site scripting (XSS) vulnerabilities in CONTROLzx HMS (formerly DRZES) 3.3.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) dedicatedPlanID param…
|
NVD-CWE-Other
|
CVE-2006-1430
|
2017-07-20 10:30 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264936
|
- |
|
fusionzone
|
couponzone
|
Cross-site scripting (XSS) vulnerability in local.cfm in fusionZONE couponZONE 4.2 allows remote attackers to inject arbitrary web script or HTML via URL-encoded (1) srchfor and (2) srchby parameters.
|
NVD-CWE-Other
|
CVE-2006-1431
|
2017-07-20 10:30 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264937
|
- |
|
fusionzone
|
couponzone
|
fusionZONE couponZONE 4.2 allows remote attackers to obtain the full path of the web server, and other sensitive information, via invalid values, as demonstrated using manipulations associated with S…
|
NVD-CWE-Other
|
CVE-2006-1432
|
2017-07-20 10:30 |
2006-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264938
|
- |
|
annuaire
|
directory
|
Annuaire (Directory) 1.0 allows remote attackers to obtain sensitive information via a direct request to include/lang-en.php, which reveals the full installation path.
|
NVD-CWE-Other
|
CVE-2006-1433
|
2017-07-20 10:30 |
2006-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264939
|
- |
|
annuaire
|
directory
|
Cross-site scripting (XSS) vulnerability in inscription.php in Annuaire (Directory) 1.0 allows remote attackers to inject arbitrary web script or HTML via the Comment Field (COMMENTAIRE parameter).
|
NVD-CWE-Other
|
CVE-2006-1434
|
2017-07-20 10:30 |
2006-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264940
|
- |
|
accounting_receiving_and_inventory_administration
|
aria
|
Cross-site scripting (XSS) vulnerability in genmessage.php in Accounting Receiving and Inventory Administration (ARIA) 0.99-6 allows remote attackers to inject arbitrary web script or HTML via the Me…
|
NVD-CWE-Other
|
CVE-2006-1435
|
2017-07-20 10:30 |
2006-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|