264861
|
- |
|
inprotect
|
inprotect
|
Multiple cross-site scripting (XSS) vulnerabilities in zones.php in Inprotect 0.21 allow remote attackers to inject arbitrary web script or HTML via the (1) Name or (2) Description field. NOTE: the …
|
NVD-CWE-Other
|
CVE-2006-1270
|
2017-07-20 10:30 |
2006-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264862
|
- |
|
inprotect
|
inprotect
|
A remote attacker must have "Manage Zones and Server" permissions on Inprotect to exploit this vulnerability.
|
NVD-CWE-Other
|
CVE-2006-1270
|
2017-07-20 10:30 |
2006-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264863
|
- |
|
ggz_gaming_zone
|
ggz_gaming_zone
|
GGZ Gaming Zone 0.0.12 allows remote attackers to cause a denial of service (client disconnect) via inputs that produce malformed XML, including (1) trailing ' (apostrophe) character on the ID attrib…
|
CWE-399
Resource Management Errors
|
CVE-2006-1275
|
2017-07-20 10:30 |
2006-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264864
|
- |
|
himpfen_consulting
|
php_simplenews
|
admin.php in Himpfen Consulting Company PHP SimpleNEWS 1.0.0 allows remote attackers to bypass authentication by setting the admin parameter in a cookie.
|
NVD-CWE-Other
|
CVE-2006-1276
|
2017-07-20 10:30 |
2006-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264865
|
- |
|
sherzod_ruzmetov
|
cgi_session
|
CGI::Session 4.03-1 allows local users to overwrite arbitrary files via a symlink attack on temporary files used by (1) Driver::File, (2) Driver::db_file, and possibly (3) Driver::sqlite.
|
NVD-CWE-Other
|
CVE-2006-1279
|
2017-07-20 10:30 |
2006-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264866
|
- |
|
sherzod_ruzmetov
|
cgi_session
|
CGI::Session 4.03-1 does not set proper permissions on temporary files created in (1) Driver::File and (2) Driver::db_file, which allows local users to obtain privileged information, such as session …
|
NVD-CWE-Other
|
CVE-2006-1280
|
2017-07-20 10:30 |
2006-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264867
|
- |
|
freebsd
|
freebsd
|
opiepasswd in One-Time Passwords in Everything (OPIE) in FreeBSD 4.10-RELEASE-p22 through 6.1-STABLE before 20060322 uses the getlogin function to determine the invoking user account, which might all…
|
NVD-CWE-Other
|
CVE-2006-1283
|
2017-07-20 10:30 |
2006-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264868
|
- |
|
symantec
|
ghost_solutions_suite norton_ghost
|
Buffer overflow in the login dialog in dbisqlc.exe in SQLAnywhere for Symantec Ghost 8.0 and 8.2, as used in Symantec Ghost Solutions Suite (SGSS) 1.0, might allow local users to read certain sensiti…
|
NVD-CWE-Other
|
CVE-2006-1286
|
2017-07-20 10:30 |
2006-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264869
|
- |
|
symantec
|
ghost_solutions_suite norton_ghost
|
Update to Symantec Ghost 8.3 that is shipped as a part of Symantec Ghost Solutions Suite 1.1.
|
NVD-CWE-Other
|
CVE-2006-1286
|
2017-07-20 10:30 |
2006-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264870
|
- |
|
invision_power_services
|
invision_power_board
|
Multiple SQL injection vulnerabilities in Invision Power Board (IPB) 2.0.4 and 2.1.4 before 20060105 allow remote attackers to execute arbitrary SQL commands via cookies, related to (1) arrays of id/…
|
NVD-CWE-Other
|
CVE-2006-1288
|
2017-07-20 10:30 |
2006-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|