|
348841
|
- |
|
next_generation_image_gallery
|
next_generation_image_gallery
|
Cross-site scripting vulnerability in index.php in Next Generation Image Gallery 0.0.1 Lite Edition allows remote attackers to inject arbitrary web script or HTML via the page parameter.
|
NVD-CWE-Other
|
CVE-2006-0086
|
2011-03-8 11:29 |
2006-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348842
|
- |
|
esri
|
arcpad
|
Buffer overflow in ESRI ArcPad 7.0.0.156 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a .amp file with a COORDSYS tag with a long s…
|
NVD-CWE-Other
|
CVE-2006-0089
|
2011-03-8 11:29 |
2006-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348843
|
- |
|
idv_directory_viewer
|
idv_directory_viewer
|
Directory traversal vulnerability in index.php in IDV Directory Viewer before 2005.1 allows remote attackers to view arbitrary directory contents via a .. (dot dot) in the dir parameter.
|
NVD-CWE-Other
|
CVE-2006-0090
|
2011-03-8 11:29 |
2006-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348844
|
- |
|
ecardmax.com
|
atcard_me_php
|
Cross-site scripting (XSS) vulnerability in index.php in @Card ME PHP allows remote attackers to inject arbitrary web script or HTML via the cat parameter.
|
NVD-CWE-Other
|
CVE-2006-0093
|
2011-03-8 11:29 |
2006-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348845
|
- |
|
modular_merchant
|
shopping_cart
|
Cross-site scripting vulnerability in category.php in Modular Merchant Shopping Cart allows remote attackers to inject arbitrary web script or HTML via the cat parameter.
|
NVD-CWE-Other
|
CVE-2006-0109
|
2011-03-8 11:29 |
2006-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348846
|
- |
|
enhanced_simple_php_gallery
|
enhanced_simple_php_gallery
|
Cross-site scripting (XSS) vulnerability in index.php in Enhanced Simple PHP Gallery 1.7 allows remote attackers to inject arbitrary web script or HTML via the dir parameter.
|
NVD-CWE-Other
|
CVE-2006-0112
|
2011-03-8 11:29 |
2006-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348847
|
- |
|
aquifer_cms
|
aquifer_cms
|
Cross-site scripting (XSS) vulnerability in Public/Index.asp in Aquifer CMS allows remote attackers to inject arbitrary web script or HTML via the Keyword parameter.
|
NVD-CWE-Other
|
CVE-2006-0122
|
2011-03-8 11:29 |
2006-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348848
|
- |
|
aquifer_cms
|
aquifer_cms
|
Vendor provided solution:
"Liquid Development has identified this vulnerability in all shipping versions of AquiferCMS and coded a software fix. The fix will be included in all releases of Aquifer…
|
NVD-CWE-Other
|
CVE-2006-0122
|
2011-03-8 11:29 |
2006-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348849
|
- |
|
appserv_open_project
|
appserv
|
Unspecified vulnerability in appserv/main.php in AppServ 2.4.5 allows remote attackers to include arbitrary files via the appserv_root parameter. NOTE: the provenance of this information is unknown;…
|
NVD-CWE-Other
|
CVE-2006-0125
|
2011-03-8 11:29 |
2006-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348850
|
- |
|
rxvt-unicode
|
rxvt-unicode
|
rxvt-unicode before 6.3, on certain platforms that use openpty and non-Unix pty devices such as Linux and most BSD platforms, does not maintain the intended permissions of tty devices, which allows l…
|
NVD-CWE-Other
|
CVE-2006-0126
|
2011-03-8 11:29 |
2006-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|