264511
|
- |
|
zoid_technologies
|
project_eros_bbsengine
|
Cross-site scripting (XSS) vulnerability in the preparestring function in lib/common.php in Project EROS bbsengine before 20060501-0142-jam, and possibly earlier versions dating back to 2006-02-23, m…
|
CWE-79
Cross-site Scripting
|
CVE-2006-3306
|
2017-07-20 10:32 |
2006-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264512
|
- |
|
zoid_technologies
|
project_eros_bbsengine
|
Multiple SQL injection vulnerabilities in Project EROS bbsengine before bbsengine-20060429-1550-jam allow remote attackers to execute arbitrary SQL commands via (1) unspecified parameters in the php/…
|
NVD-CWE-Other
|
CVE-2006-3307
|
2017-07-20 10:32 |
2006-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264513
|
- |
|
zoid_technologies
|
project_eros_bbsengine
|
Unspecified vulnerability in the wpprop code for Project EROS bbsengine before 20060622-0315 has unknown impact and remote attack vectors via [img] tags, possibly cross-site scripting (XSS).
|
NVD-CWE-Other
|
CVE-2006-3308
|
2017-07-20 10:32 |
2006-06-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264514
|
- |
|
rahnemaco
|
rahnemaco
|
PHP remote file inclusion vulnerability in page.php in an unspecified RahnemaCo.com product, possibly eShop, allows remote attackers to execute arbitrary PHP code via a URL in the osCsid parameter.
|
NVD-CWE-Other
|
CVE-2006-3315
|
2017-07-20 10:32 |
2006-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264515
|
- |
|
spiffyjr
|
phpraid
|
Multiple PHP remote file inclusion vulnerabilities in phpRaid 3.0.5 allow remote attackers to execute arbitrary code via a URL in the phpraid_dir parameter to (1) logs.php and (2) users.php, a differ…
|
NVD-CWE-Other
|
CVE-2006-3316
|
2017-07-20 10:32 |
2006-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264516
|
- |
|
2enetworx
|
openforum
|
Multiple cross-site scripting (XSS) vulnerabilities in openforum.asp in OpenForum 1.2 Beta and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) ofdisp and (2) ofmsgid…
|
NVD-CWE-Other
|
CVE-2006-3321
|
2017-07-20 10:32 |
2006-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264517
|
- |
|
joesph_leung
|
quickzip
|
Directory traversal vulnerability in QuickZip 3.06.3 allows remote user-assisted attackers to overwrite arbitrary files or directories via .. (dot dot) sequences in filenames within (1) TAR,(2) GZ, a…
|
NVD-CWE-Other
|
CVE-2006-3326
|
2017-07-20 10:32 |
2006-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264518
|
- |
|
e-cbd.biz
|
custom_dating_biz_dating_script
|
Cross-site scripting (XSS) vulnerability in Custom dating biz dating script 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) sn20_special_cases parameter ("Special Cases…
|
NVD-CWE-Other
|
CVE-2006-3327
|
2017-07-20 10:32 |
2006-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264519
|
- |
|
starflow_software
|
hostflow
|
new_ticket.cgi in Hostflow 2.2.1-15 allows remote attackers to steal and replay authentication credentials via an IMG tag in the desc parameter ("Ticket Description" field) that points to a URL that …
|
NVD-CWE-Other
|
CVE-2006-3328
|
2017-07-20 10:32 |
2006-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264520
|
- |
|
phpoutsourcing
|
zorum
|
SQL injection vulnerability in index.php in Zorum Forum 3.5 allows remote attackers to execute arbitrary SQL commands via the (1) offset, (2) tid, (3) fromid, (4) sortby, (5) fromfrommethod, and (6) …
|
NVD-CWE-Other
|
CVE-2006-3332
|
2017-07-20 10:32 |
2006-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|