264541
|
- |
|
fujitsu
|
myweb_portal_office
|
SQL injection vulnerability in MyWeb Portal Office, Standard Edition, Public Edition, Medical Edition, Citizen Edition, School Edition, and Light Edition allows remote attackers to execute arbitrary …
|
NVD-CWE-Other
|
CVE-2006-2517
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264542
|
- |
|
dayfox_designs
|
dayfox_blog
|
Dayfox Blog 2.0 and earlier stores user credentials in edit/slog_users.txt under the web document root with insufficient access control, which allows remote attackers to gain privileges.
|
NVD-CWE-Other
|
CVE-2006-2522
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264543
|
- |
|
usebb
|
usebb
|
Cross-site scripting (XSS) vulnerability in UseBB 1.0 RC1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors when processing the user date format.
|
NVD-CWE-Other
|
CVE-2006-2524
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264544
|
- |
|
usebb
|
usebb
|
SQL injection vulnerability in UseBB 1.0 RC1 and earlier allows remote attackers to execute arbitrary SQL commands via the member list search module.
|
NVD-CWE-Other
|
CVE-2006-2525
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264545
|
- |
|
smartisoft
|
phpbazar
|
PHP remote file inclusion vulnerability in classified_right.php in phpBazar 2.1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the language_dir parameter.
|
NVD-CWE-Other
|
CVE-2006-2528
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264546
|
- |
|
horizontal_shooter_bor openbor senile_team
|
horizontal_shooter_bor openbor beats_of_rage
|
Multiple format string vulnerabilities in (a) OpenBOR 2.0046 and earlier, (b) Beats of Rage (BOR) 1.0029 and earlier, and (c) Horizontal Shooter BOR (HOR) 2.0000 and earlier allow remote attackers to…
|
NVD-CWE-Other
|
CVE-2006-2537
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264547
|
- |
|
sybase
|
easerver
|
Sybase EAServer 5.0 for HP-UX Itanium, 5.2 for IBM AIX, HP-UX PA-RISC, Linux x86, and Sun Solaris SPARC, and 5.3 for Sun Solaris SPARC does not properly protect passwords when they are being entered …
|
NVD-CWE-Other
|
CVE-2006-2539
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264548
|
- |
|
ti_kan
|
xmcd
|
xmcdconfig in xmcd for Debian GNU/Linux 2.6-17.1 creates /var/lib/cddb and /var/lib/xmcd/discog with world writable permissions, which allows local users to cause a denial of service (disk consumptio…
|
NVD-CWE-Other
|
CVE-2006-2542
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264549
|
- |
|
bea
|
weblogic_server
|
A recommended admin password reset mechanism for BEA WebLogic Server 8.1, when followed before October 10, 2005, causes the administrator password to be stored in cleartext in the domain directory, w…
|
NVD-CWE-Other
|
CVE-2006-2546
|
2017-07-20 10:31 |
2006-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264550
|
- |
|
php
|
php
|
The cURL library (libcurl) in PHP 4.4.2 and 5.1.4 allows attackers to bypass safe mode and read files via a file:// request containing null characters.
|
NVD-CWE-Other
|
CVE-2006-2563
|
2017-07-20 10:31 |
2006-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|