255581
|
- |
|
uni-vert
|
phpleague
|
SQL injection vulnerability in consult/classement.php in Uni-Vert PhpLeague 0.82 and earlier allows remote attackers to execute arbitrary SQL commands via the champ parameter.
|
NVD-CWE-Other
|
CVE-2006-5676
|
2017-10-19 10:29 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255582
|
- |
|
efs_software
|
efs_web_server
|
Easy File Sharing (EFS) Web Server 4.0, when running on an NTFS file system, allows remote attackers to read arbitrary files under the web root by appending "::$DATA" to the end of a HTTP GET request…
|
NVD-CWE-Other
|
CVE-2006-5714
|
2017-10-19 10:29 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255583
|
- |
|
efs_software
|
easy_address_book
|
Easy File Sharing (EFS) Easy Address Book 1.2, when run on an NTFS file system, allows remote attackers to read arbitrary files under the web root by appending "::$DATA" to the end of an HTTP GET req…
|
NVD-CWE-Other
|
CVE-2006-5715
|
2017-10-19 10:29 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255584
|
- |
|
aep_networks
|
smartgate_ssl_server
|
The SSL server in AEP Smartgate 4.3b allows remote attackers to determine existence of directories via a direct request for a directory URI, which returns different HTTP status codes for existing and…
|
CWE-200
Information Exposure
|
CVE-2006-5725
|
2017-10-19 10:29 |
2006-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255585
|
- |
|
dxmsoft
|
xm_easy_personal_ftp_server
|
XM Easy Personal FTP Server 5.2.1 and earlier allows remote authenticated users to cause a denial of service via a long argument to the NLST command, possibly involving the -al flags.
|
CWE-399
Resource Management Errors
|
CVE-2006-5728
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255586
|
- |
|
modxcms
|
modxcms
|
PHP remote file inclusion vulnerability in manager/media/browser/mcpuk/connectors/php/Commands/Thumbnail.php in Modx CMS 0.9.2.1 and earlier allows remote attackers to execute arbitrary PHP code via …
|
NVD-CWE-Other
|
CVE-2006-5730
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255587
|
- |
|
modxcms
|
modxcms
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2006-5730
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255588
|
- |
|
lithium_cms
|
lithium_cms
|
Directory traversal vulnerability in classes/index.php in Lithium CMS 4.04c and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the siteconf[curl] p…
|
NVD-CWE-Other
|
CVE-2006-5731
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255589
|
- |
|
tgs_cms
|
tgs_cms
|
SQL injection vulnerability in logout.php in T.G.S. CMS 0.1.7 and earlier allows remote attackers to execute arbitrary SQL commands via the myauthorid cookie.
|
NVD-CWE-Other
|
CVE-2006-5732
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255590
|
- |
|
postnuke_software_foundation
|
postnuke
|
Directory traversal vulnerability in error.php in PostNuke 0.763 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the PNSVlang (PNSV lang) cookie…
|
NVD-CWE-Other
|
CVE-2006-5733
|
2017-10-19 10:29 |
2006-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|