264681
|
- |
|
easy_ad-manager
|
easy_ad-manager
|
Cross-site scripting (XSS) vulnerability in details.php in Easy Ad-Manager allows remote attackers to inject arbitrary web script or HTML via the mbid parameter, which is reflected in an error messag…
|
NVD-CWE-Other
|
CVE-2006-3002
|
2017-07-20 10:31 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264682
|
- |
|
easy_ad-manager
|
easy_ad-manager
|
details.php in Easy Ad-Manager allows remote attackers to obtain the full installation path via an invalid mbid parameter, which leaks the path in an error message. NOTE: this might be resultant fro…
|
NVD-CWE-Other
|
CVE-2006-3003
|
2017-07-20 10:31 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264683
|
- |
|
scriptsez
|
ez_ringtone_manager
|
Multiple cross-site scripting (XSS) vulnerabilities in Ez Ringtone Manager allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in player.php and (2) keyword paramet…
|
NVD-CWE-Other
|
CVE-2006-3004
|
2017-07-20 10:31 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264684
|
- |
|
gentoo
|
media-libs_jpeg linux
|
The JPEG library in media-libs/jpeg before 6b-r7 on Gentoo Linux is built without the -maxmem feature, which could allow context-dependent attackers to cause a denial of service (memory exhaustion) v…
|
NVD-CWE-Other
|
CVE-2006-3005
|
2017-07-20 10:31 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264685
|
- |
|
nullsoft
|
shoutcast_server
|
Multiple cross-site scripting (XSS) vulnerabilities in SHOUTcast 1.9.5 allow remote attackers to inject arbitrary HTML or web script via the DJ fields (1) Description, (2) URL, (3) Genre, (4) AIM, an…
|
NVD-CWE-Other
|
CVE-2006-3007
|
2017-07-20 10:31 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264686
|
- |
|
aliacom
|
open_business_management
|
Multiple cross-site scripting (XSS) vulnerabilities in Open Business Management (OBM) 1.0.3 pl1 allow remote attackers to inject arbitrary HTML or web script via the (1) tf_lang, (2) tf_name, (3) tf_…
|
NVD-CWE-Other
|
CVE-2006-3009
|
2017-07-20 10:31 |
2006-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264687
|
- |
|
aliacom
|
open_business_management
|
Multiple SQL injection vulnerabilities in Open Business Management (OBM) 1.0.3 pl1 allow remote attackers to execute arbitrary SQL commands via the (1) new_order and (2) order_dir parameters to (a) i…
|
NVD-CWE-Other
|
CVE-2006-3010
|
2017-07-20 10:31 |
2006-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264688
|
- |
|
php
|
php
|
The error_log function in basic_functions.c in PHP before 4.4.4 and 5.x before 5.1.5 allows local users to bypass safe mode and open_basedir restrictions via a "php://" or other scheme in the third a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-3011
|
2017-07-20 10:31 |
2006-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264689
|
- |
|
planete_afrique
|
ws-album
|
Multiple cross-site scripting (XSS) vulnerabilities in FullPhoto.asp in WS-Album 1.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) image and (2) PublisedDate p…
|
NVD-CWE-Other
|
CVE-2006-3020
|
2017-07-20 10:31 |
2006-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264690
|
- |
|
blue-collar_productions
|
i-gallery
|
Multiple cross-site scripting (XSS) vulnerabilities in BlueCollar i-Gallery 4.1 PLUS and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) n and (2) d parameters in (a…
|
NVD-CWE-Other
|
CVE-2006-3021
|
2017-07-20 10:31 |
2006-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|