| OSVDB ID | Disclosure Date | Title |
|
37337
Description:
(Description Provided by CVE) : PHP remote file inclusion vulnerability in sources/join.php in Aardvark Topsites PHP 4.2.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the CONFIG[path] parameter, a different vector than CVE-2006-2149.
|
2006-04-30
|
Aardvark Topsites PHP sources/join.php CONFIG[path] Variable Remote File Inclusion
|
|
27780
Description:
Mac OS X contains a flaw that may allow a remote denial of service. The issue is triggered when an OS X application is directed to open a malformed EXR file, and will result in loss of availability for the application.
|
2006-04-29
|
Apple Mac OS X Malformed EXR File Handling DoS
|
|
26968
Description:
Unknown / Incomplete
|
2006-04-29
|
Project EROS bbsengine php/comment.php Unspecified SQL Injection
|
|
25163
Description:
HB-NS contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the index.php script not properly sanitizing user-supplied input to the "topic" and "id" variables. This may allow an attacker to inject or manipulate SQL queries in the backend database.
|
2006-04-29
|
HB-NS index.php Multiple Variable SQL Injection
|
|
25164
Description:
HB-NS contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the "poster_name", "poster_email", "poster_homepage", and "message" variables upon submission to the index.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-04-29
|
HB-NS index.php Multiple Variable XSS
|
|
25157
Description:
(Description Provided by CVE) : SQL injection vulnerability in news.php in AZNEWS allows remote attackers to execute arbitrary SQL commands via the ID parameter.
|
2006-04-29
|
AZNEWS news.php ID Variable SQL Injection
|
|
25155
Description:
WEBInsta Limbo contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to sql.php not properly sanitizing user input supplied to the 'classes_dir' variable. This may allow an attacker to include a file from a remote host that contains arbitrary commands which will be executed by the vulnerable script.
|
2006-04-29
|
WEBInsta Limbo sql.php classes_dir Variable Remote File Inclusion
|
|
25140
Description:
OpenPHPNuke contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to master.php not properly sanitizing user input supplied to the 'root_path' variable. This may allow an attacker to include a file from a remote host that contains arbitrary commands which will be executed by the vulnerable script.
|
2006-04-29
|
OpenPHPNuke master.php root_path Variable Remote File Inclusion
|
|
26774
Description:
(Description Provided by CVE) : Multiple SQL injection vulnerabilities in Project EROS bbsengine before bbsengine-20060429-1550-jam allow remote attackers to execute arbitrary SQL commands via (1) unspecified parameters in the php/comment.php and (2) the getpartialmatches method in php/aolbonics.php.
|
2006-04-29
|
Project EROS bbsengine php/comment.php SQL Injection
|
|
25262
Description:
(Description Provided by CVE) : PHP remote file inclusion vulnerability in /includes/kb_constants.php in Knowledge Base Mod for PHPbb 2.0.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.
|
2006-04-29
|
phpBB Knowledge Base Mod kb_constants.php module_root_path Variable Remote File Inclusion
|
|
25166
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in Thyme 1.3 allows remote attackers to inject arbitrary web script or HTML via the search page.
|
2006-04-29
|
Thyme Search Event Field searchfor Variable XSS
|
|
25123
Description:
TextFileBB contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the '[color]', '[size]', and '[url]' BBcode upon submission to an unknown or unspecified script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-04-29
|
TextFileBB BBcode Multiple Tag XSS
|
|
41174
Description:
Unknown / Incomplete
|
2006-04-29
|
Tikiwiki adodb Unspecified Issue
|
|
25295
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in w-Agora (aka Web-Agora) 4.2.0 allows remote attackers to inject arbitrary web script or HTML via a post with a BBCode tag that contains a JavaScript event name followed by whitespace before the '=' (equals) character, which bypasses a restrictive regular expression that attempts to remove onmouseover and other events.
|
2006-04-29
|
w-Agora HTML/Script Filter Bypass XSS
|
|
25607
Description:
(Description Provided by CVE) : SQL injection vulnerability in weblog_posting.php in Blog Mod 0.2.x allows remote attackers to execute arbitrary SQL commands via the r parameter.
|
2006-04-29
|
Blog Mod weblog_posting.php r Variable SQL Injection
|
|
25606
Description:
(Description Provided by CVE) : Multiple format string vulnerabilities in xiTK (xitk/main.c) in xine 0.99.4 might allow attackers to cause a denial of service via format string specifiers in an MP3 filename specified on the command line. NOTE: this is a different vulnerability than CVE-2006-1905. In addition, if the only attack vectors involve a user-assisted, local command line argument of a non-setuid program, this issue might not be a vulnerability.
|
2006-04-29
|
xine xiTK Multiple Format String
|
|
33794
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in the registration form in Casinosoft Casino Script (Masvet) 3.2 allow remote attackers to inject arbitrary web script or HTML via the (1) name or (2) surname field.
|
2006-04-28
|
Casinosoft Casino Script (Masvet) Multiple Field XSS
|
|
25582
Description:
(Description Provided by CVE) : PHP remote file include vulnerability in admin/config_settings.tpl.php in I-RATER Platinum allows remote attackers to execute arbitrary code via a URL in the include_path parameter. NOTE: this is a different vector, and possibly a different vulnerability, than CVE-2006-1929.
|
2006-04-28
|
I-RATER Platinum admin/configsettings.tpl.php include_path Variable Remote File Inclusion
|
|
25581
Description:
(Description Provided by CVE) : PHP remote file inclusion vulnerability in index.php in CoolMenus allows remote attackers to execute arbitrary code via a URL in the page parameter. NOTE: the original report for this issue is probably erroneous, since CoolMenus does not appear to be written in PHP.
|
2006-04-28
|
CoolMenus Event index.php page Variable Remote File Inclusion
|
|
31436
Description:
(Description Provided by CVE) : SQL injection vulnerability in detail.asp in DUclassified allows remote attackers to execute arbitrary SQL commands via the iPro parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
|
2006-04-28
|
DUclassified detail.asp iPro Variable SQL Injection
|
|
25130
Description:
ARtmedic Event contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to index.php not properly sanitizing user input supplied to the 'page' variable. This may allow an attacker to include a file from a remote host that contains arbitrary commands which will be executed by the vulnerable script.
|
2006-04-28
|
artmedic Event index.php page Variable Remote File Inclusion
|
|
25248
Description:
(Description Provided by CVE) : Virtual Private Server (Vserver) 2.0.x before 2.0.2-rc18 and 2.1.x before 2.1.1-rc18 provides certain context capabilities (ccaps) that allow local guest users to perform operations that were only intended to be allowed by the guest-root.
|
2006-04-28
|
Linux-VServer Context Capabilities (ccaps) Sub User Permission Weakness
|
|
25066
Description:
Network Administration Visualized contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the report interface not properly sanitizing user-supplied input to an unknown variable. This may allow an attacker to inject or manipulate SQL queries in the backend database.
|
2006-04-28
|
Network Administration Visualized (NAV) Report Interface SQL Injection
|
|
25156
Description:
(Description Provided by CVE) : SQL injection vulnerability in login.php in Ruperts News allows remote attackers to execute arbitrary SQL commands via the username parameter.
|
2006-04-28
|
Ruperts News Script login.php username Variable SQL Injection
|
|
25188
Description:
(Description Provided by CVE) : SQL injection vulnerability in the topic deletion functionality (post_delete function in func_mod.php) for Invision Power Board 2.1.5 allows remote authenticated moderators to execute arbitrary SQL commands via the selectedpids parameter, which bypasses an integer value check when the $id variable is an array.
|
2006-04-28
|
Invision Power Board Mod Function selectedpids Variable SQL Injection
|
|
25073
Description:
Internet Explorer contains a flaw that may allow a malicious user to access documents served from another web site. The issue is caused due to an error in the handling of redirections for URLs with the "mhtml:" URI handler. It is possible that the flaw may allow a malicious website to access properties of a site in an arbitrary external domain in the context of the victim user's browser resulting in a loss of confidentiality.
|
2006-04-28
|
Microsoft IE mhtml: Redirection Domain Restriction Bypass
|
|
25153
Description:
4images contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'top.php' script not properly sanitizing user-supplied input to the 'sessionid' variable. This may allow an attacker to inject or manipulate SQL queries in the backend database.
|
2006-04-28
|
4images top.php sessionid Variable SQL Injection
|
|
25154
Description:
4images contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'member.php' script not properly sanitizing user-supplied input to the 'sessionid' variable. This may allow an attacker to inject or manipulate SQL queries in the backend database.
|
2006-04-28
|
4images member.php sessionid Variable SQL Injection
|
|
25061
Description:
Kmail contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'id' and 'ordner' variables upon submission to the main.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-04-28
|
Kmail main.php Multiple Variable XSS
|
|
25062
Description:
Kmail contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'draft' variable upon submission to the compose.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-04-28
|
Kmail compose.php draft Variable XSS
|
|
25063
Description:
Kmail contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'ordner' variable upon submission to the webdisk.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-04-28
|
Kmail webdisk.php ordner Variable XSS
|
|
25064
Description:
Kmail contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'm' and 'y' variables upon submission to the calendar.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2006-04-28
|
Kmail calendar.php Multiple Variable XSS
|
|
25065
Description:
Kmail contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when a remote attacker provides malformed input to the 'd' variable of the calendar.php script, which will disclose the software's installation path resulting in a loss of confidentiality. While such information is relatively low risk, it is often useful in carrying out additional, more focused attacks.
|
2006-04-28
|
Kmail calendar.php d Variable Path Disclosure
|
|
25261
Description:
(Description Provided by CVE) : PHP remote file inclusion vulnerability in admin/addentry.php in phpBB Advanced Guestbook 2.4.0 and earlier, when register_globals is enabled, allows remote attackers to include arbitrary files via the phpbb_root_path parameter.
|
2006-04-28
|
phpBB Advanced GuestBook addentry.php phpbb_root_path Variable Remote File Inclusion
|
|
25294
Description:
TopList contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to list.php not properly sanitizing user input supplied to the 'returnpath' variable. This may allow an attacker to include a file from a remote host that contains arbitrary commands which will be executed by the vulnerable script.
|
2006-04-28
|
TopList for phpBB list.php returnpath Variable Remote File Inclusion
|
|
25260
Description:
TopList contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to toplist.php not properly sanitizing user input supplied to the 'phpbb_root_path' variable. This may allow an attacker to include a file from a remote host that contains arbitrary commands which will be executed by the vulnerable script.
|
2006-04-28
|
phpBB TopList toplist.php phpbb_root_path Variable Remote File Inclusion
|
|
25298
Description:
(Description Provided by CVE) : Buffer overflow in SWS web Server 0.1.7 allows remote attackers to execute arbitrary code via a long request.
|
2006-04-28
|
SWS Web Server Long Request Overflow
|
|
25299
Description:
(Description Provided by CVE) : Format string vulnerability in SWS web Server 0.1.7 allows remote attackers to execute arbitrary code via unspecified vectors that are not properly handled in a syslog function call.
|
2006-04-28
|
SWS Web Server Syslog Call Format String
|
|
25296
Description:
Unknown / Incomplete
|
2006-04-28
|
Cireos Portal forum/buscar.php query Variable XSS
|
|
25297
Description:
Unknown / Incomplete
|
2006-04-28
|
Cireos Portal index.php page Variable XSS
|