265821
|
- |
|
rigter_portal_system
|
rigter_portal_system
|
Directory traversal vulnerability in index.php in Rigter Portal System (RPS) 1.0, 2.0, and 3.0 allows remote attackers to read arbitrary files via ".." sequences in the id parameter.
|
NVD-CWE-Other
|
CVE-2006-7083
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265822
|
- |
|
rigter_portal_system
|
rigter_portal_system
|
Rigter Portal System (RPS) 1.0, 2.0, and 3.0 allows remote attackers to add arbitrary content and conduct XSS attacks via a direct request to add_art.php. NOTE: this issue was originally reported as…
|
NVD-CWE-Other
|
CVE-2006-7085
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265823
|
- |
|
simple_php_forum
|
simple_php_forum
|
Multiple SQL injection vulnerabilities in Simple PHP Forum before 0.4 allow remote attackers to execute arbitrary SQL commands via the username parameter to (1) logon_user.php and (2) update_profile.…
|
NVD-CWE-Other
|
CVE-2006-7088
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265824
|
- |
|
ban
|
ban
|
SQL injection vulnerability in connexion.php in Ban 0.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2006-7089
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265825
|
- |
|
phpbb_security
|
phpbb_security
|
PHP remote file inclusion vulnerability in phpbb_security.php in phpBB Security 1.0.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the php_root_path parameter.
|
CWE-94
Code Injection
|
CVE-2006-7090
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265826
|
- |
|
klink
|
dim3
|
Integer signedness error in the network_receive_packet function in socket.c in dimension 3 engine (dim3) 1.5 and earlier allows remote attackers to cause a denial of service (application crash) and p…
|
NVD-CWE-Other
|
CVE-2006-7095
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265827
|
- |
|
klink
|
dim3
|
Buffer overflow in the network_host_handle_join function in host.c in dimension 3 engine (dim3) 1.5 and earlier allows remote attackers to cause a denial of service (application crash) and possibly e…
|
NVD-CWE-Other
|
CVE-2006-7096
|
2017-07-29 10:29 |
2007-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265828
|
- |
|
debian
|
apache
|
The Debian GNU/Linux 033_-F_NO_SETSID patch for the Apache HTTP Server 1.3.34-4 does not properly disassociate httpd from a controlling tty when httpd is started interactively, which allows local use…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2006-7098
|
2017-07-29 10:29 |
2007-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265829
|
- |
|
mambo
|
mostlyce
|
PHP remote file inclusion vulnerability in htmltemplate.php in the Chad Auld MOStlyContent Editor (MOStlyCE) as created on May 2006, a component for Mambo 4.5.4, allows remote attackers to execute ar…
|
CWE-94
Code Injection
|
CVE-2006-7104
|
2017-07-29 10:29 |
2007-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265830
|
- |
|
drupal
|
imce_module
|
Unrestricted file upload vulnerability in IMCE before 1.6, a Drupal module, allows remote authenticated users to upload arbitrary PHP code via a filename with a double extension such as .php.gif.
|
NVD-CWE-Other
|
CVE-2006-7109
|
2017-07-29 10:29 |
2007-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|