|
343651
|
- |
|
chxo
|
feedsplitter
|
Directory traversal vulnerability in CHXO Feedsplitter 2006-01-21 allows remote attackers to read arbitrary XML files via .. (dot dot) sequences in the format parameter with a leading ".", which bypa…
|
NVD-CWE-Other
|
CVE-2006-4550
|
2018-10-18 06:37 |
2006-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343652
|
- |
|
chxo
|
feedsplitter
|
Eval injection vulnerability in CHXO Feedsplitter 2006-01-21 allows remote attackers to execute arbitrary PHP code via (1) the file specified as the value of the format parameter, and possibly (2) th…
|
NVD-CWE-Other
|
CVE-2006-4551
|
2018-10-18 06:37 |
2006-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343653
|
- |
|
chxo
|
feedsplitter
|
Cross-site scripting (XSS) vulnerability in CHXO Feedsplitter 2006-01-21 allows remote attackers to inject arbitrary web script or HTML via the RSS feed.
|
NVD-CWE-Other
|
CVE-2006-4552
|
2018-10-18 06:37 |
2006-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343654
|
- |
|
joomla mambo
|
com_comprofiler_component
|
PHP remote file inclusion vulnerability in plugin.class.php in the com_comprofiler Components 1.0 RC2 for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosC…
|
CWE-94
Code Injection
|
CVE-2006-4553
|
2018-10-18 06:37 |
2006-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343655
|
- |
|
mozilla
|
firefox seamonkey thunderbird
|
Heap-based buffer overflow in Mozilla Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5 allows remote attackers to cause a denial of service (crash) and possibly execute …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2006-4565
|
2018-10-18 06:37 |
2006-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343656
|
- |
|
mozilla
|
firefox seamonkey thunderbird
|
Mozilla Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5 allows remote attackers to cause a denial of service (crash) via a malformed JavaScript regular expression that …
|
NVD-CWE-Other
|
CVE-2006-4566
|
2018-10-18 06:37 |
2006-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343657
|
- |
|
mozilla
|
firefox thunderbird
|
Mozilla Firefox before 1.5.0.7 and Thunderbird before 1.5.0.7 makes it easy for users to accept self-signed certificates for the auto-update mechanism, which might allow remote user-assisted attacker…
|
NVD-CWE-Other
|
CVE-2006-4567
|
2018-10-18 06:37 |
2006-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343658
|
- |
|
mozilla
|
firefox seamonkey
|
Mozilla Firefox before 1.5.0.7 and SeaMonkey before 1.0.5 allows remote attackers to bypass the security model and inject content into the sub-frame of another site via targetWindow.frames[n].documen…
|
CWE-79
Cross-site Scripting
|
CVE-2006-4568
|
2018-10-18 06:37 |
2006-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343659
|
- |
|
mozilla
|
firefox
|
The popup blocker in Mozilla Firefox before 1.5.0.7 opens the "blocked popups" display in the context of the Location bar instead of the subframe from which the popup originated, which might make it …
|
NVD-CWE-Other
|
CVE-2006-4569
|
2018-10-18 06:37 |
2006-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
343660
|
- |
|
digium
|
asterisk
|
Stack-based buffer overflow in channels/chan_mgcp.c in MGCP in Asterisk 1.0 through 1.2.10 allows remote attackers to execute arbitrary code via a crafted audit endpoint (AUEP) response.
|
NVD-CWE-Other
|
CVE-2006-4345
|
2018-10-18 06:36 |
2006-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|