265781
|
- |
|
symantec
|
veritas_netbackup_client veritas_netbackup_enterprise_server veritas_netbackup_server
|
The NetBackup bpcd daemon (bpcd.exe) in Symantec Veritas NetBackup 5.0 before 5.0_MP7, 5.1 before 5.1_MP6, and 6.0 before 6.0_MP4 does not properly check for chained commands, which allows remote att…
|
NVD-CWE-Other
|
CVE-2006-4902
|
2017-07-20 10:33 |
2006-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265782
|
- |
|
qualiteam
|
x-cart
|
Dynamic variable evaluation vulnerability in cmpi.php in Qualiteam X-Cart 4.1.3 and earlier allows remote attackers to overwrite arbitrary program variables and execute arbitrary PHP code, as demonst…
|
NVD-CWE-Other
|
CVE-2006-4904
|
2017-07-20 10:33 |
2006-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265783
|
- |
|
cisco
|
guard_ddos_mitigation_appliance
|
Cross-site scripting (XSS) vulnerability in Cisco Guard DDoS Mitigation Appliance before 5.1(6), when anti-spoofing is enabled, allows remote attackers to inject arbitrary web script or HTML via cert…
|
NVD-CWE-Other
|
CVE-2006-4909
|
2017-07-20 10:33 |
2006-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265784
|
- |
|
a.l-pifou
|
a.l-pifou
|
Directory traversal vulnerability in A.l-Pifou 1.8p2 allows remote attackers to read arbitrary files via ".." sequences in the ze_langue_02 cookie, as demonstrated by using the choix_lng parameter to…
|
NVD-CWE-Other
|
CVE-2006-4914
|
2017-07-20 10:33 |
2006-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265785
|
- |
|
drupal
|
search_keyword_module
|
Cross-site scripting (XSS) vulnerability in the Drupal 4.7 Search Keywords module before 1.15 2006/09/15 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related…
|
NVD-CWE-Other
|
CVE-2006-4947
|
2017-07-20 10:33 |
2006-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265786
|
- |
|
drupal
|
search_keyword_module
|
Drupal core is not affected. If you do not use the Search Keywords module there is nothing you need to do.
This issue may allow an attacker to gain administrative privileges, provided that certain c…
|
NVD-CWE-Other
|
CVE-2006-4947
|
2017-07-20 10:33 |
2006-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265787
|
- |
|
prosysinfo
|
tftp_server_tftpdwin
|
Stack-based buffer overflow in tftpd.exe in ProSysInfo TFTP Server TFTPDWIN 0.4.2 and earlier allows remote attackers to execute arbitrary code or cause a denial of service via a long file name. NOTE…
|
NVD-CWE-Other
|
CVE-2006-4948
|
2017-07-20 10:33 |
2006-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265788
|
- |
|
drupal
|
site_profile_directory_module
|
Cross-site scripting (XSS) vulnerability in the Drupal 4.6 Site Profile Directory (profile_pages.module) before 1.1.2.1 and the Drupal 4.7 Site Profile Directory (profile_pages.module) before 1.2.2.1…
|
NVD-CWE-Other
|
CVE-2006-4949
|
2017-07-20 10:33 |
2006-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265789
|
- |
|
neosys
|
neon_webmail
|
Neon WebMail for Java before 5.08 allows remote attackers to execute arbitrary Java (JSP) code by sending an e-mail message with a JSP file attachment, which is stored under the web root with a predi…
|
NVD-CWE-Other
|
CVE-2006-4951
|
2017-07-20 10:33 |
2006-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265790
|
- |
|
neosys
|
neon_webmail
|
The updatemail servlet in Neon WebMail for Java before 5.08 allows remote attackers to move e-mail messages of arbitrary users between different mail folders, specified by the folderid and tofolderid…
|
NVD-CWE-Other
|
CVE-2006-4952
|
2017-07-20 10:33 |
2006-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|