264411
|
- |
|
zen_cart
|
web_shopping_cart
|
Multiple cross-site scripting (XSS) vulnerabilities in Zen Cart Web Shopping Cart before 1.3.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2006-6868
|
2017-07-29 10:29 |
2006-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264412
|
- |
|
phpwcms
|
phpwcms
|
phpwcms 1.2.5-DEV allows remote attackers to obtain sensitive information via a direct request for (1) files.public-userroot.inc.php or (2) files.private.additions.inc.php in include/inc_lib/, which …
|
CWE-200
Information Exposure
|
CVE-2006-6886
|
2017-07-29 10:29 |
2006-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264413
|
- |
|
phpmyfaq
|
phpmyfaq
|
SQL injection vulnerability in phpMyFAQ 1.6.7 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors, possibly the userfile or filename parameter.
|
CWE-89
SQL Injection
|
CVE-2006-6912
|
2017-07-29 10:29 |
2006-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264414
|
- |
|
nucleus_cms
|
nucleus_cms
|
Cross-site scripting (XSS) vulnerability in Nucleus before 3.24 allows remote attackers to inject arbitrary web script or HTML via unknown vectors, possibly involving (1) lib/ADMIN.php and (2) lib/SK…
|
NVD-CWE-Other
|
CVE-2006-6920
|
2017-07-29 10:29 |
2007-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264415
|
- |
|
bitweaver
|
bitweaver
|
bitweaver 1.3.1 and earlier allows remote attackers to obtain sensitive information via a sort_mode=-98 query string to (1) blogs/list_blogs.php, (2) fisheye/index.php, (3) wiki/orphan_pages.php, or …
|
NVD-CWE-Other
|
CVE-2006-6924
|
2017-07-29 10:29 |
2007-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264416
|
- |
|
bitweaver
|
bitweaver
|
Multiple cross-site scripting (XSS) vulnerabilities in bitweaver 1.3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the message title field when submitting an art…
|
NVD-CWE-Other
|
CVE-2006-6925
|
2017-07-29 10:29 |
2007-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264417
|
- |
|
snort
|
snort
|
Algorithmic complexity vulnerability in Snort before 2.6.1, during predicate evaluation in rule matching for certain rules, allows remote attackers to cause a denial of service (CPU consumption and d…
|
NVD-CWE-Other
|
CVE-2006-6931
|
2017-07-29 10:29 |
2007-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264418
|
- |
|
efs_software
|
easy_chat_server
|
Easy Chat Server 2.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download certain files via direct requests to files such as (1)…
|
NVD-CWE-Other
|
CVE-2006-6933
|
2017-07-29 10:29 |
2007-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264419
|
- |
|
gnu
|
ed
|
GNU ed before 0.3 allows local users to overwrite arbitrary files via a symlink attack on temporary files, possibly in the open_sbuf function.
|
NVD-CWE-Other
|
CVE-2006-6939
|
2017-07-29 10:29 |
2007-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264420
|
- |
|
phpmyadmin debian
|
phpmyadmin debian_linux
|
Multiple cross-site scripting (XSS) vulnerabilities in PhpMyAdmin before 2.9.1.1 allow remote attackers to inject arbitrary HTML or web script via (1) a comment for a table name, as exploited through…
|
CWE-79
Cross-site Scripting
|
CVE-2006-6942
|
2017-07-29 10:29 |
2007-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|