264701
|
- |
|
logisphere
|
logisphere
|
Cross-site scripting (XSS) vulnerability in LogiSphere 1.6.0 allows remote attackers to inject arbitrary web script or HTML via the URL, which is reflected in an error page.
|
NVD-CWE-Other
|
CVE-2006-3044
|
2017-07-20 10:31 |
2006-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264702
|
- |
|
metamail_corporation
|
metamail
|
Buffer overflow in Metamail 2.7-50 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via e-mail messages with a long boundary attribute, a di…
|
NVD-CWE-Other
|
CVE-2006-0709
|
2017-07-20 10:30 |
2006-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264703
|
- |
|
isode
|
m-vault_server
|
Double free vulnerability in isode.eddy in Isode M-Vault Server 11.3 allows remote attackers to execute arbitrary code via a crafted LDAP request, as demonstrated by ProtoVer Sample LDAP.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2006-0710
|
2017-07-20 10:30 |
2006-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264704
|
- |
|
neomail
|
neomail
|
The (1) addfolder and (2) deletefolder functions in neomail-prefs.pl in NeoMail 1.28 do not validate the Session ID, which allows remote attackers to add and delete arbitrary files, when configured w…
|
NVD-CWE-Other
|
CVE-2006-0711
|
2017-07-20 10:30 |
2006-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264705
|
- |
|
squishdot
|
squishdot
|
mail_html template in Squishdot 1.5.0 and earlier does not properly validate the (1) email and (2) title variables, which allows remote attackers to bypass spam filters by injecting SMTP headers, pro…
|
NVD-CWE-Other
|
CVE-2006-0712
|
2017-07-20 10:30 |
2006-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264706
|
- |
|
ibm
|
tivoli_directory_server
|
IBM Tivoli Directory Server 6.0 allows remote attackers to cause a denial of service (crash) via a crafted LDAP request, as demonstrated by test 2532 in the ProtoVer Sample LDAP test suite.
|
NVD-CWE-Other
|
CVE-2006-0717
|
2017-07-20 10:30 |
2006-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264707
|
- |
|
reamday_enterprises
|
magic_news_lite
|
PHP remote file inclusion vulnerability in preview.php in Reamday Enterprises Magic News Lite 1.2.3, when register_globals is enabled, allows remote attackers to include arbitrary files via a URL in …
|
CWE-94
Code Injection
|
CVE-2006-0723
|
2017-07-20 10:30 |
2006-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264708
|
- |
|
reamday_enterprises
|
magic_news_lite
|
profile.php in Reamday Enterprises Magic News Lite 1.2.3, when register_globals is enabled, allows remote attackers to modify program behavior, potentially bypassing authentication controls, via modi…
|
NVD-CWE-Other
|
CVE-2006-0724
|
2017-07-20 10:30 |
2006-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264709
|
- |
|
plume-cms
|
plume_cms
|
PHP remote file inclusion vulnerability in prepend.php in Plume CMS 1.0.2, when register_globals is enabled, allows remote attackers to include arbitrary files via a URL in the _PX_config[manager_pat…
|
CWE-94
Code Injection
|
CVE-2006-0725
|
2017-07-20 10:30 |
2006-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264710
|
- |
|
cpg-nuke
|
dragonfly_cms
|
Cross-site scripting (XSS) vulnerability in linking.php in CPG-Nuke Dragonfly CMS 9.0.6.1 allows remote attackers to inject arbitrary web script or HTML via a URI that is generated when creating a li…
|
NVD-CWE-Other
|
CVE-2006-0726
|
2017-07-20 10:30 |
2006-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|