7.5
    High

    CVE-2006-6930

    Last Modified: 4 Jan 2017

    SQL injection vulnerability in viewad.asp in Rapid Classified 3.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:laurent gaffie
    Published:13 Jan 2007
    6.8
    Medium

    CVE-2006-6929

    Last Modified: 4 Jan 2017

    Multiple cross-site scripting (XSS) vulnerabilities in Rapid Classified 3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to (a) reply.asp or (b) view_print.asp, the (2) SH1 parameter to (c) search.asp, the (3) name parameter to reply.asp, or the (4) dosearch parameter to (d) advsearch.asp.

    Source:laurent gaffie
    Published:13 Jan 2007
    6.8
    Medium

    CVE-2006-6928

    Last Modified: 21 Oct 2013

    Multiple cross-site scripting (XSS) vulnerabilities in Rialto 1.6 allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter to (a) listmain.asp or (b) searchmain.asp, the (2) the Keyword parameter to (c) searchkey.asp, or the (3) refno parameter to (d) forminfo.asp.

    Source:laurent gaffie
    Published:13 Jan 2007
    7.5
    High

    CVE-2006-6927

    Last Modified: 21 Oct 2013

    Multiple SQL injection vulnerabilities in Rialto 1.6 allow remote attackers to execute arbitrary SQL commands via (1) the uname (username) and (2) pword (passwd) fields in (a) admin/default.asp; the (3) ID parameter to (b) listfull.asp or (c) printmain.asp; the (4) cat parameter to (d) listmain.asp, (e) searchoption.asp, or (f) searchmain.asp; the (5) Keyword parameter to (g) searchkey.asp; the (6) area parameter to searchmain.asp or searchoption.asp; the (7) searchin parameter to searchkey.asp; or the (8) cost1, (9) cost2, (10) acreage1, or (11) squarefeet1 parameters to searchoption.asp. NOTE: some of these details are obtained from third party information.

    Source:laurent gaffie
    Published:13 Jan 2007
    6.8
    Medium

    CVE-2006-6925

    Last Modified: 14 Oct 2013

    Multiple cross-site scripting (XSS) vulnerabilities in bitweaver 1.3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the message title field when submitting an article to articles/edit.php, (2) the message title field when submitting a blog post to blogs/post.php, or (3) the message description field when editing in the Sandbox in wiki/edit.php.

    Source:laurent gaffie
    Published:13 Jan 2007
    5
    Medium

    CVE-2006-6924

    Last Modified: 14 Oct 2013

    bitweaver 1.3.1 and earlier allows remote attackers to obtain sensitive information via a sort_mode=-98 query string to (1) blogs/list_blogs.php, (2) fisheye/index.php, (3) wiki/orphan_pages.php, or (4) wiki/list_pages.php, which forces a SQL error. NOTE: the fisheye/list_galleries.php vector is already covered by CVE-2005-4380.

    Source:laurent gaffie
    Published:13 Jan 2007
    7.5
    High

    CVE-2006-6923

    Last Modified: 14 Oct 2013

    SQL injection vulnerability in newsletters/edition.php in bitweaver 1.3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the tk parameter.

    Source:laurent gaffie
    Published:13 Jan 2007
    6.8
    Medium

    CVE-2006-6919

    Last Modified: 24 Sept 2013

    Firefox Sage extension 1.3.8 and earlier allows remote attackers to execute arbitrary Javascript in the local context via an RSS feed with an img tag containing the script followed by an extra trailing ">", which Sage modifies to close the img element before the malicious script.

    Source:pdp
    Published:11 Jan 2007
    10
    Critical

    CVE-2006-6917

    Last Modified: 23 Apr 2026

    Multiple buffer overflows in Computer Associates (CA) BrightStor ARCserve Backup R11.5 Server before SP2 allows remote attackers to execute arbitrary code in the Tape Engine (tapeeng.exe) via a crafted RPC request with (1) opnum 38, which is not properly handled in TAPEUTIL.dll 11.5.3884.0, or (2) opnum 37, which is not properly handled in TAPEENG.dll 11.5.3884.0.

    Source:Winny Thomas
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6912

    Last Modified: 27 Sept 2016

    SQL injection vulnerability in phpMyFAQ 1.6.7 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors, possibly the userfile or filename parameter.

    Source:elgCrew
    Published:31 Dec 2006
    6
    Medium

    CVE-2006-6911

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in search.asp in Digitizing Quote And Ordering System 1.0 allows remote authenticated users to execute arbitrary SQL commands via the ordernum parameter.

    Source:ajann
    Published:31 Dec 2006
    7.8
    High

    CVE-2006-6910

    Last Modified: 23 Apr 2026

    formbankcgi.exe in Fersch Formbankserver 1.9, when the PATH_INFO begins with Abfrage, allows remote attackers to cause a denial of service (daemon crash) via multiple requests containing many /../ sequences in the Name parameter.

    Source:Bl0od3r
    Published:31 Dec 2006
    5.4
    Medium

    CVE-2006-6899

    Last Modified: 12 Nov 2013

    hidd in BlueZ (bluez-utils) before 2.25 allows remote attackers to obtain control of the (1) Mouse and (2) Keyboard Human Interface Device (HID) via a certain configuration of two HID (PSM) endpoints, operating as a server, aka HidAttack.

    Source:Collin Mulliner
    Published:28 Dec 2006
    5
    Medium

    CVE-2006-6891

    Last Modified: 23 Apr 2026

    Vz (Adp) Forum 2.0.3 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain the administrative account name and password hash via a direct request for users/admin.txt.

    Source:3l3ctric-Cracker
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6890

    Last Modified: 21 Sept 2016

    Voodoo chat 1.0RC1b stores sensitive information under the web root with insufficient access control, which allows remote attackers to download passwords via a direct request for data/users.dat.

    Source:bd0rk
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6889

    Last Modified: 21 Sept 2016

    FreeStyle Wiki (fswiki) 3.6.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain passwords via a direct request for config/user.dat.

    Source:bd0rk
    Published:31 Dec 2006
    5
    Medium

    CVE-2006-6888

    Last Modified: 23 Apr 2026

    P-News 1.16 and 1.17 store sensitive information under the web root with insufficient access control, which allows remote attackers to obtain the administrative account name and password hash via a direct request for db/user.dat.

    Source:3l3ctric-Cracker
    Published:31 Dec 2006
    6.8
    Medium

    CVE-2006-6887

    Last Modified: 20 Sept 2016

    Unrestricted file upload vulnerability in logahead UNU 1.0 allows remote attackers to upload and execute arbitrary PHP code via unspecified vectors related to plugins/widged/_widged.php (aka the WidgEd plugin), a different vulnerability than CVE-2006-6783. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

    Source:CorryL
    Published:31 Dec 2006
    4.3
    Medium

    CVE-2006-6885

    Last Modified: 23 Apr 2026

    An ActiveX control in SwDir.dll in Macromedia Shockwave 10 allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long string in the swURL attribute.

    Source:shinnai
    Published:31 Dec 2006
    9.3
    Critical

    CVE-2006-6884

    Last Modified: 14 Sept 2016

    Buffer overflow in the WZFILEVIEW.FileViewCtrl.61 ActiveX control (aka Sky Software "FileView" ActiveX control) for WinZip 10.0 Build 6667 allows remote attackers to execute arbitrary code via a long argument to the CreateNewFolderFromName method, a different vulnerability than CVE-2006-5198.

    Source:prdelka
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6880

    Last Modified: 27 Oct 2016

    Multiple SQL injection vulnerabilities in code/guestadd.php in PHP-Update 2.7 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) newmessage, (2) newname, (3) newwebsite, or (4) newemail parameter.

    Source:rgod
    Published:31 Dec 2006
    6
    Medium

    CVE-2006-6879

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in admin/uploads.php in PHP-Update 2.7 and earlier allows remote authenticated users to upload arbitrary PHP scripts to the gfx/ and files/ directories via the userfile parameter.

    Source:undefined1_
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6878

    Last Modified: 23 Apr 2026

    admin/uploads.php in PHP-Update 2.7 and earlier allows remote attackers to gain privileges by setting the rights[7] parameter to 1 during a login action.

    Source:undefined1_
    Published:31 Dec 2006
    6.8
    Medium

    CVE-2006-6877

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in Matteo Lucarelli 3editor CMS 0.42 and earlier, when register_globals is enabled, allows remote attackers to include arbitrary files via a .. (dot dot) in the page parameter.

    Source:3l3ctric-Cracker
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6873

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in mod.php in eNdonesia 8.4 allow remote attackers to execute arbitrary SQL commands via (1) the did parameter in a (a) viewdisk operation (diskusi mod), or the (2) cid parameter in a (b) viewlink (katalog mod) or (b) viewcat (diskusi mod) operation.

    Source:z1ckX(ru)
    Published:31 Dec 2006
    5
    Medium

    CVE-2006-6872

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in mod.php in eNdonesia 8.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the mod parameter.

    Source:z1ckX(ru)
    Published:31 Dec 2006
    6.8
    Medium

    CVE-2006-6871

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in eNdonesia 8.4 allow remote attackers to inject arbitrary web script or HTML via (1) the mod parameter in a viewlink operation in mod.php, (2) the intypeid parameter in a showinfo operation in the informasi module in mod.php, (3) the "your Friend" field in friend.php, or (4) the "Main Text" field in admin.php.

    Source:z1ckX(ru)
    Published:31 Dec 2006
    9.3
    Critical

    CVE-2006-6869

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in includes/search/search_mdforum.php in MAXdev MDForum 2.0.1 and earlier, when magic_quotes_gpc is disabled and register_globals is enabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the PNSVlang cookie to error.php, as demonstrated by injecting PHP sequences into an Apache HTTP Server log file, which is then included by error.php.

    Source:Kacper
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6867

    Last Modified: 21 Sept 2016

    Multiple PHP remote file inclusion vulnerabilities in Vladimir Menshakov buratinable templator (aka bubla) 0.9.1 allow remote attackers to execute arbitrary PHP code via a URL in the bu_dir parameter to (1) bu/bu_claro.php, (2) bu/bu_cache.php, or (3) bu/bu_parse.php, different vectors and a different affected version than CVE-2006-6809.

    Source:DeltahackingTEAM
    Published:31 Dec 2006
    7.8
    High

    CVE-2006-6866

    Last Modified: 23 Apr 2026

    STphp EasyNews PRO 4.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain usernames, email addresses, and password hashes via a direct request for data/users.txt.

    Source:bd0rk
    Published:31 Dec 2006
    7.8
    High

    CVE-2006-6865

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in SAFileUpSamples/util/viewsrc.asp in SoftArtisans FileUp (SAFileUp) 5.0.14 allows remote attackers to read arbitrary files via a %c0%ae. (Unicode dot dot) in the path parameter, which bypasses the checks for ".." sequences.

    Source:Inge Henriksen
    Published:31 Dec 2006
    10
    Critical

    CVE-2006-6864

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in E2_header.inc.php in Enigma2 Coppermine Bridge 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the boarddir parameter.

    Source:Mehmet Ince
    Published:31 Dec 2006
    9.8
    Critical

    CVE-2006-6863

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in the Enigma2 plugin (Enigma2.php) in Enigma WordPress Bridge allows remote attackers to execute arbitrary PHP code via a URL in the boarddir parameter. NOTE: CVE disputes this issue, since $boarddir is set to a fixed value

    Source:Mehmet Ince
    Published:31 Dec 2006
    10
    Critical

    CVE-2006-6861

    Last Modified: 2 Nov 2013

    Multiple SQL injection vulnerabilities in Outfront Spooky Login 2.7 allow remote attackers to execute arbitrary SQL commands via (1) the UserUpdate parameter to login/register.asp or (2) unspecified parameters to includes/a_register.asp.

    Source:Doz
    Published:31 Dec 2006
    10
    Critical

    CVE-2006-6859

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in coupon_detail.asp in Website Designs For Less Click N' Print Coupons 2005.01 and earlier allows remote attackers to execute arbitrary SQL commands via the key parameter.

    Source:ajann
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6856

    Last Modified: 23 Apr 2026

    Direct static code injection vulnerability in WebText CMS 0.4.5.2 and earlier allows remote attackers to inject arbitrary PHP code into a script in wt/users/ via the im parameter during a profile edit (edycja) operation, which is then executed via a direct request for this script.

    Source:Kacper
    Published:31 Dec 2006
    5
    Medium

    CVE-2006-6855

    Last Modified: 23 Apr 2026

    AIDeX Mini-WebServer 1.1 early release 3 allows remote attackers to cause a denial of service (daemon crash) via a flood of HTTP GET requests, possibly related to display of HTTP log data by the GUI. NOTE: some of these details are obtained from third party information.

    Source:shinnai
    Published:31 Dec 2006
    10
    Critical

    CVE-2006-6853

    Last Modified: 21 Sept 2016

    Buffer overflow in Durian Web Application Server 3.02 freeware on Windows allows remote attackers to execute arbitrary code via a long string in a crafted packet to TCP port 4002.

    Source:rgod
    Published:31 Dec 2006
    6.8
    Medium

    CVE-2006-6851

    Last Modified: 2 Nov 2013

    Multiple cross-site scripting (XSS) vulnerabilities in contact_us.php in ac4p Mobilelib gold 2 allow remote attackers to inject arbitrary web script or HTML via the (1) email or (2) errr parameter.

    Source:viP HaCKEr
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6850

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in include.php in the Roster Module (character_roster) in Shadowed Portal 5.7 allows remote attackers to execute arbitrary PHP code via a URL in the mod_root parameter.

    Source:Mehmet Ince
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6849

    Last Modified: 23 Apr 2026

    administration/index.php in Cahier de texte (CDT) 2.2 does not properly exit when authentication fails, which allows remote attackers to perform unauthorized administrative actions.

    Source:DarkFig
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6848

    Last Modified: 4 Jan 2017

    SQL injection vulnerability in admin.asp in ASPTicker 1.0 allows remote attackers to execute arbitrary SQL commands via the PATH_INFO, possibly related to the Password parameter.

    Source:ajann
    Published:31 Dec 2006
    5
    Medium

    CVE-2006-6847

    Last Modified: 26 Sept 2016

    An ActiveX control in ierpplug.dll for RealNetworks RealPlayer 10.5 allows remote attackers to cause a denial of service (Internet Explorer 7 crash) by invoking the RealPlayer.OpenURLInPlayerBrowser method with a long second argument.

    Source:shinnai
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6846

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in While You Were Out (WYWO) InOut Board 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the num parameter in (a) phonemessage.asp, (2) the catcode parameter in (b) faqDsp.asp, and the (3) Username and (4) Password fields in (c) login.asp.

    Source:ajann
    Published:31 Dec 2006
    6.8
    Medium

    CVE-2006-6845

    Last Modified: 2 Dec 2016

    Cross-site scripting (XSS) vulnerability in index.php in CMS Made Simple 1.0.2 allows remote attackers to inject arbitrary web script or HTML via the cntnt01searchinput parameter in a Search action.

    Source:Nicokiller
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6842

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in admin/admin_acronyms.php in the Acronym Mod 0.9.5 for phpBB2 Plus 1.53 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:the master
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6838

    Last Modified: 20 Sept 2016

    Rediff Bol Downloader ActiveX (OCX) control allows remote attackers to execute arbitrary files, and obtain sensitive information (usernames and pathnames), via a URL in the url vbscript parameter.

    Source:Gregory R. Panakkal
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6831

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in faqDsp.asp in aFAQ 1.0 allows remote attackers to execute arbitrary SQL commands via the catcode parameter.

    Source:ajann
    Published:31 Dec 2006
    7.5
    High

    CVE-2006-6830

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in b2verifauth.php in b2 Blog 0.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the index parameter.

    Source:mdx
    Published:31 Dec 2006
    5
    Medium

    CVE-2006-6827

    Last Modified: 23 Apr 2026

    Flash8b.ocx in Macromedia Flash 8 allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long string in the Flash8b.AllowScriptAccess method.

    Source:shinnai
    Published:31 Dec 2006