Browse Database

Browsing Vulnerabilities Disclosed in December of 2006

<< Back to Browse
OSVDB IDDisclosure DateTitle
37551 2006-12-30 Voodoo Chat data/users.dat Direct Request User Database Disclosure
37552 2006-12-30 FreeStyle Wiki config/user.dat Direct Request User Database Disclosure
37556 2006-12-30 IMGallery users_adm/start1.php Arbitrary PHP File UPload
32549 2006-12-30 MythControlServer MythControlServer.c sendToMythTV Function Overflow
32548 2006-12-30 ISO (iso_wincmd) Plugin for Total Commander ISO Image Pathname Overflow
31024 2006-12-30 Zen Cart Multiple Unspecified XSS
33017 2006-12-30 FileDownload Snippet for MODx download.php Arbitrary File Download
33349 2006-12-30 Enigma WordPress Bridge Enigma2.php boarddir Variable Remote File Inclusion
33350 2006-12-30 Enigma2 Coppermine Bridge E2_header.inc.php boarddir Variable Remote File Inclusion
33347 2006-12-30 FileUp viewsrc.asp path Variable Encoded Traversal Arbitrary File Access
33442 2006-12-29 Durian Web Application Server Crafted Packet Remote Overflow
33382 2006-12-29 Oracle Portal page Variable XSS
37510 2006-12-29 Macromedia Shockwave ActiveX (SwDir.dll) swURL Attribute Remote DoS
36648 2006-12-29 Macromedia Flash Flash8b.ocx Flash8b.AllowScriptAccess Method DoS
32507 2006-12-29 tDiary Unspecified Arbitrary Ruby Code Execution
32540 2006-12-29 STphp EasyNews PRO data/users.txt Direct Request User Credential Disclosure
32596 2006-12-29 Plash pola-run -t Option File Permission Weakness
32597 2006-12-29 Plash Unspecified setuid/setgid Privilege Escalation
33352 2006-12-29 Spooky login/register.asp SQL Injection
33353 2006-12-29 Spooky login/login.asp XSS
33354 2006-12-29 Spooky includes/a_register.asp SQL Injection
33355 2006-12-29 Spooky login/register.asp XSS
33345 2006-12-29 DoceboLMS modules/credits/credits.php lang Variable XSS
33344 2006-12-29 Land Down Under (LDU) journal.inc.php w Variable SQL Injection
33343 2006-12-29 QuickCam VC Linux Device Driver (aka quickcam-vc) qcamvc_video_init Function Memory Corruption
34805 2006-12-28 ac4p Mobilelib contact_us.php Multiple Variable XSS
34757 2006-12-28 RealPlayer ierpplug.dll ActiveX RealPlayer.OpenURLInPlayerBrowser Method Remote DoS
35444 2006-12-28 phpBB2 Plus admin/admin_acronyms.php id Variable SQL Injection
32503 2006-12-28 PHP-Update admin/uploads.php rights[7] Variable Privilege Escalation
32537 2006-12-28 AIDeX Mini-Webserver HTTP Request Saturation DoS
32508 2006-12-28 WebText CMS wt/users/ im Variable Profile Edit (edycja) Arbitrary PHP Command Injection
32509 2006-12-28 While You Were Out (WYWO) InOut Board phonemessage.asp num Variable SQL Injection
32510 2006-12-28 While You Were Out (WYWO) InOut Board faqDsp.asp catcode Variable SQL Injection
32511 2006-12-28 While You Were Out (WYWO) InOut Board login.asp Multiple Field SQL Injection
32506 2006-12-28 ASPTicker admin.asp Password Field SQL Injection
31468 2006-12-28 Cacti cmd.php Command Execution and SQL Injection
33342 2006-12-28 Mobilelib Gold contact_us.php Multiple Variable XSS
33398 2006-12-28 Windows XP msgina.dll Local Overflow
33340 2006-12-28 OpenSER SMS Handling fetchsms Function Remote Overflow
33341 2006-12-28 OpenSER OSP Module validateospheader Function OSP Header Processing Remote Overflow

DONATE NOW!

User Status

Quick Searches

Advertisements

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2008 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use