264831
|
- |
|
renasoft
|
netjetserver
|
Renasoft NetJetServer 2.5.3.939, and possibly earlier, uses insecure permissions for Global.asa, which allows remote attackers to obtain sensitive information. NOTE: the provenance of this informati…
|
NVD-CWE-Other
|
CVE-2006-5979
|
2017-07-20 10:34 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264832
|
- |
|
renasoft
|
netjetserver
|
adm_lgn_admin.asp in Renasoft NetJetServer 2.5.3.939, and possibly earlier, does not properly perform login authentication, which allows remote attackers to obtain administrative privileges. NOTE: t…
|
NVD-CWE-Other
|
CVE-2006-5980
|
2017-07-20 10:34 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264833
|
- |
|
biba_software
|
seleniumserver_ftp_server
|
Multiple directory traversal vulnerabilities in SeleniumServer FTP Server 1.0, and possibly earlier, allow remote attackers to list arbitrary directories, read arbitrary files, and upload arbitrary f…
|
CWE-22
Path Traversal
|
CVE-2006-5981
|
2017-07-20 10:34 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264834
|
- |
|
biba_software
|
seleniumserver_ftp_server
|
SeleniumServer FTP Server 1.0, and possibly earlier, stores user passwords in plaintext in the Servers directory, which allows attackers to obtain passwords by reading the file. NOTE: the provenance…
|
CWE-310
Cryptographic Issues
|
CVE-2006-5982
|
2017-07-20 10:34 |
2006-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264835
|
- |
|
sun
|
jdk jre
|
Unspecified vulnerability in the Java Runtime Environment (JRE) Swing library in JDK and JRE 5.0 Update 7 and earlier allows attackers to obtain certain information via unknown attack vectors, relate…
|
NVD-CWE-Other
|
CVE-2006-6009
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264836
|
- |
|
mginternet
|
car_site_manager
|
Cross-site scripting (XSS) vulnerability in csm/asp/listings.asp in MGinternet Car Site Manager (CSM) allows remote attackers to inject arbitrary web script or HTML via the p parameter. NOTE: the pr…
|
NVD-CWE-Other
|
CVE-2006-6012
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264837
|
- |
|
f-art_agency
|
blog_cms
|
Cross-site scripting (XSS) vulnerability in list.php in BLOG:CMS 4.1.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the FADDR parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2006-6035
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264838
|
- |
|
emreturk
|
openhuman
|
SQL injection vulnerability in OpenHuman before 1.0 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2006-6036
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264839
|
- |
|
oliver
|
oliver
|
PHP file inclusion vulnerability in loginform-inc.php in Oliver (formerly Webshare) 1.2.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a UN…
|
NVD-CWE-Other
|
CVE-2006-6043
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264840
|
- |
|
oliver
|
oliver
|
Successful exploitation requires that "register_globals" is enabled.
|
NVD-CWE-Other
|
CVE-2006-6043
|
2017-07-20 10:34 |
2006-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|