265091
|
- |
|
okscripts
|
okarticles
|
Cross-site scripting (XSS) vulnerability in search.php in OkScripts OkArticles 1.0 allows remote attackers to inject arbitrary web script or HTML via the q parameter.
|
NVD-CWE-Other
|
CVE-2006-3000
|
2017-07-20 10:31 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265092
|
- |
|
okscripts
|
okmall
|
Cross-site scripting (XSS) vulnerability in search.php in OkScripts OkMall 1.0 allow remote attackers to inject arbitrary web script or HTML via the page parameter. NOTE: this might be resultant fro…
|
NVD-CWE-Other
|
CVE-2006-3001
|
2017-07-20 10:31 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265093
|
- |
|
easy_ad-manager
|
easy_ad-manager
|
Cross-site scripting (XSS) vulnerability in details.php in Easy Ad-Manager allows remote attackers to inject arbitrary web script or HTML via the mbid parameter, which is reflected in an error messag…
|
NVD-CWE-Other
|
CVE-2006-3002
|
2017-07-20 10:31 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265094
|
- |
|
easy_ad-manager
|
easy_ad-manager
|
details.php in Easy Ad-Manager allows remote attackers to obtain the full installation path via an invalid mbid parameter, which leaks the path in an error message. NOTE: this might be resultant fro…
|
NVD-CWE-Other
|
CVE-2006-3003
|
2017-07-20 10:31 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265095
|
- |
|
scriptsez
|
ez_ringtone_manager
|
Multiple cross-site scripting (XSS) vulnerabilities in Ez Ringtone Manager allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in player.php and (2) keyword paramet…
|
NVD-CWE-Other
|
CVE-2006-3004
|
2017-07-20 10:31 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265096
|
- |
|
gentoo
|
media-libs_jpeg linux
|
The JPEG library in media-libs/jpeg before 6b-r7 on Gentoo Linux is built without the -maxmem feature, which could allow context-dependent attackers to cause a denial of service (memory exhaustion) v…
|
NVD-CWE-Other
|
CVE-2006-3005
|
2017-07-20 10:31 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265097
|
- |
|
nullsoft
|
shoutcast_server
|
Multiple cross-site scripting (XSS) vulnerabilities in SHOUTcast 1.9.5 allow remote attackers to inject arbitrary HTML or web script via the DJ fields (1) Description, (2) URL, (3) Genre, (4) AIM, an…
|
NVD-CWE-Other
|
CVE-2006-3007
|
2017-07-20 10:31 |
2006-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265098
|
- |
|
aliacom
|
open_business_management
|
Multiple cross-site scripting (XSS) vulnerabilities in Open Business Management (OBM) 1.0.3 pl1 allow remote attackers to inject arbitrary HTML or web script via the (1) tf_lang, (2) tf_name, (3) tf_…
|
NVD-CWE-Other
|
CVE-2006-3009
|
2017-07-20 10:31 |
2006-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265099
|
- |
|
aliacom
|
open_business_management
|
Multiple SQL injection vulnerabilities in Open Business Management (OBM) 1.0.3 pl1 allow remote attackers to execute arbitrary SQL commands via the (1) new_order and (2) order_dir parameters to (a) i…
|
NVD-CWE-Other
|
CVE-2006-3010
|
2017-07-20 10:31 |
2006-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265100
|
- |
|
php
|
php
|
The error_log function in basic_functions.c in PHP before 4.4.4 and 5.x before 5.1.5 allows local users to bypass safe mode and open_basedir restrictions via a "php://" or other scheme in the third a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-3011
|
2017-07-20 10:31 |
2006-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|