|
343911
|
- |
|
barracuda_networks
|
barracuda_spam_firewall
|
Login.pm in Barracuda Spam Firewall (BSF) 3.3.01.001 through 3.3.03.053 contains a hard-coded password for the guest account, which allows remote attackers to read sensitive information such as e-mai…
|
NVD-CWE-Other
|
CVE-2006-4001
|
2018-10-18 06:32 |
2006-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343912
|
- |
|
hobbit_monitor
|
hobbit_monitor
|
The config method in Henrik Storner Hobbit monitor before 4.1.2p2 permits access to files outside of the intended configuration directory, which allows remote attackers to obtain sensitive informatio…
|
NVD-CWE-Other
|
CVE-2006-4003
|
2018-10-18 06:32 |
2006-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343913
|
- |
|
hobbit_monitor
|
hobbit_monitor
|
This vulnerability is addressed in the following product release:
Hobbit Monitor, Hobbit Monitor, 4.1.2p2
|
NVD-CWE-Other
|
CVE-2006-4003
|
2018-10-18 06:32 |
2006-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343914
|
- |
|
knusperleicht
|
knusperleicht_guestbook
|
PHP remote file inclusion vulnerability in index.php in Knusperleicht Guestbook 3.5 allows remote attackers to execute arbitrary PHP code via a URL in the GB_PATH parameter.
|
NVD-CWE-Other
|
CVE-2006-4007
|
2018-10-18 06:32 |
2006-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343915
|
- |
|
knusperleicht
|
faq
|
PHP remote file inclusion vulnerability in index.php in Knusperleicht Faq 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the faq_path parameter.
|
NVD-CWE-Other
|
CVE-2006-4008
|
2018-10-18 06:32 |
2006-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343916
|
- |
|
vwar
|
virtual_war
|
Cross-site scripting (XSS) vulnerability in war.php in Virtual War (Vwar) 1.5.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the page parameter.
|
NVD-CWE-Other
|
CVE-2006-4009
|
2018-10-18 06:32 |
2006-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343917
|
- |
|
vwar
|
virtual_war
|
SQL injection vulnerability in war.php in Virtual War (Vwar) 1.5.0 and earlier allows remote attackers to execute arbitrary SQL commands via the page parameter. NOTE: other vectors are covered by CV…
|
CWE-89
SQL Injection
|
CVE-2006-4010
|
2018-10-18 06:32 |
2006-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343918
|
- |
|
savewebportal
|
savewebportal
|
Multiple PHP remote file inclusion vulnerabilities in circeOS SaveWeb Portal 3.4 allow remote attackers to execute arbitrary PHP code via a URL in the SITE_Path parameter to (1) poll/poll.php or (2) …
|
NVD-CWE-Other
|
CVE-2006-4012
|
2018-10-18 06:32 |
2006-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343919
|
- |
|
hp
|
procurve_switch_3500yl procurve_switch_5400zl procurve_switch_6200yl
|
Hewlett-Packard (HP) ProCurve 3500yl, 6200yl, and 5400zl switches with software before K.11.33 allow remote attackers to cause a denial of service (possibly memory leak or system crash) via unknown v…
|
NVD-CWE-Other
|
CVE-2006-4015
|
2018-10-18 06:32 |
2006-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343920
|
- |
|
inter_network_marketing_ag
|
g3_content_management_system
|
Cross-site scripting (XSS) vulnerability in the search module in Inter Network Marketing (INM) CMS G3 allows remote attackers to inject arbitrary web script or HTML via the search_string parameter.
|
NVD-CWE-Other
|
CVE-2006-4017
|
2018-10-18 06:32 |
2006-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|