266201
|
- |
|
jmb_software
|
autogallery
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Autogallery 0.41 allow remote attackers to inject arbitrary web script or HTML via the (1) pic or (2) show parameters.
|
CWE-79
Cross-site Scripting
|
CVE-2006-1750
|
2017-07-20 10:30 |
2006-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266202
|
- |
|
michiel_van_baak
|
mvblog
|
Multiple SQL injection vulnerabilities in MvBlog before 1.6 allow remote attackers to execute arbitrary SQL commands via unknown vectors.
|
CWE-89
SQL Injection
|
CVE-2006-1751
|
2017-07-20 10:30 |
2006-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266203
|
- |
|
michiel_van_baak
|
mvblog
|
Multiple cross-site scripting (XSS) vulnerabilities in the backend in MvBlog before 1.6 allow remote attackers to inject arbitrary web script or HTML via the (1) name or (2) body fields in a comment.
|
NVD-CWE-Other
|
CVE-2006-1752
|
2017-07-20 10:30 |
2006-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266204
|
- |
|
debian
|
debian_linux
|
A cron job in fcheck before 2.7.59 allows local users to overwrite arbitrary files via a symlink attack on a temporary file.
|
NVD-CWE-Other
|
CVE-2006-1753
|
2017-07-20 10:30 |
2006-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266205
|
- |
|
debian
|
debian_linux
|
This vulnerability is addressed in the following product releases:
Fcheck, 2.7.59-7sarge1
Fcheck, 2.7.59-8
|
NVD-CWE-Other
|
CVE-2006-1753
|
2017-07-20 10:30 |
2006-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266206
|
- |
|
jetphotosoft.com
|
jetphoto
|
Multiple cross-site scripting (XSS) vulnerabilities in JetPhoto allow remote attackers to inject arbitrary web script or HTML via the page parameter in (1) Classic.view/thumbnail.php, (2) Classic.vie…
|
CWE-79
Cross-site Scripting
|
CVE-2006-1760
|
2017-07-20 10:30 |
2006-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266207
|
- |
|
papoo
|
papoo
|
Multiple SQL injection vulnerabilities in Papoo 2.1.5, and 3 beta1 and earlier, allow remote attackers to execute arbitrary SQL commands via the (1) getlang and (2) reporeid parameter in (a) index.ph…
|
NVD-CWE-Other
|
CVE-2006-1766
|
2017-07-20 10:30 |
2006-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266208
|
- |
|
phpkit
|
phpkit
|
SQL injection vulnerability in include.php in PHPKIT 1.6.1 Release 2 and earlier allows remote attackers to execute arbitrary SQL commands via the contentid parameter, possibly involving content/news…
|
NVD-CWE-Other
|
CVE-2006-1773
|
2017-07-20 10:30 |
2006-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266209
|
- |
|
mambo
|
mambo
|
SQL injection vulnerability in Mambo 4.5.3, 4.5.3h, and possibly earlier versions allows remote attackers to execute arbitrary SQL commands via (1) the $username variable in the mosGetParam function …
|
NVD-CWE-Other
|
CVE-2006-1794
|
2017-07-20 10:30 |
2006-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266210
|
- |
|
mambo
|
mambo
|
Successful exploitation requires that "magic_quotes_gpc" is disabled.
|
NVD-CWE-Other
|
CVE-2006-1794
|
2017-07-20 10:30 |
2006-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|