|
312581
|
- |
|
virtual_communication_services
|
vpmi_enterprise
|
SQL injection vulnerability in VCS Virtual Program Management Intranet (VPMi) Enterprise 3.3 allows remote attackers to execute arbitrary SQL commands via the UpdateID0 parameter to Service_Requests.…
|
CWE-89
SQL Injection
|
CVE-2006-0897
|
2024-08-8 02:15 |
2006-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312582
|
- |
|
dotproject
|
dotproject
|
dotProject 2.0.1 and earlier allows remote attackers to obtain sensitive information via direct requests with an invalid baseDir to certain PHP scripts in the db directory, which reveal the path in a…
|
NVD-CWE-Other
|
CVE-2006-0754
|
2024-08-8 02:15 |
2006-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312583
|
- |
|
dotproject
|
dotproject
|
Multiple PHP remote file include vulnerabilities in dotProject 2.0.1 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary commands via the baseDir parameter in (…
|
NVD-CWE-Other
|
CVE-2006-0755
|
2024-08-8 02:15 |
2006-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312584
|
- |
|
dotproject
|
dotproject
|
dotProject 2.0.1 and earlier leaves (1) phpinfo.php and (2) check.php accessible under the /docs/ directory after installation, which allows remote attackers to obtain sensitive configuration informa…
|
NVD-CWE-Other
|
CVE-2006-0756
|
2024-08-8 02:15 |
2006-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312585
|
- |
|
wordpress
|
wordpress
|
Cross-site scripting (XSS) vulnerability in WordPress 2.0.0 allows remote attackers to inject arbitrary web script or HTML via scriptable attributes such as (1) onfocus and (2) onblur in the "author'…
|
NVD-CWE-Other
|
CVE-2006-0733
|
2024-08-8 02:15 |
2006-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312586
|
- |
|
gasoft
|
gas_forum_light
|
Multiple SQL injection vulnerabilities in archive.asp in GA's Forum Light allow remote attackers to execute arbitrary SQL commands via the (1) Forum and (2) pages parameter. NOTE: SecurityTracker sa…
|
NVD-CWE-Other
|
CVE-2006-0669
|
2024-08-8 02:15 |
2006-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312587
|
- |
|
blackboard
|
blackboard blackboard_academic_suite
|
Blackboard Academic Suite 6.0 and earlier does not properly clear session information when de-authenticating a user who is idle, which allows subsequent users to log in as the previous user and gain …
|
NVD-CWE-Other
|
CVE-2006-0511
|
2024-08-8 02:15 |
2006-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312588
|
- |
|
khaled_mardam-bey
|
mirc
|
Buffer overflow in the font command of mIRC, probably 6.16, allows local users to execute arbitrary code via a long string. NOTE: the original researcher claims that issue has been disputed by the ve…
|
NVD-CWE-Other
|
CVE-2006-0489
|
2024-08-8 02:15 |
2006-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312589
|
- |
|
oracle
|
mysql
|
MySQL 5.0.18 allows local users with access to a VIEW to obtain sensitive information via the "SELECT * FROM information_schema.views;" query, which returns the query that created the VIEW. NOTE: th…
|
CWE-200
Information Exposure
|
CVE-2006-0369
|
2024-08-8 02:15 |
2006-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312590
|
- |
|
phpxplorer
|
phpxplorer
|
Directory traversal vulnerability in workspaces.php in phpXplorer 0.9.33 allows remote attackers to include arbitrary files via a .. (dot dot) and trailing null byte (%00) in the sShare parameter. N…
|
NVD-CWE-Other
|
CVE-2006-0244
|
2024-08-8 02:15 |
2006-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|