Latest CVE Feed
-
7.5
HIGHCVE-2006-5022
PHP remote file inclusion vulnerability in includes/global.php in Joshua Wilson pNews System 1.1.0 (aka PowerNews) allows remote attackers to execute arbitrary PHP code via a URL in the nbs parameter.... Read more
Affected Products : pnews- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
7.5
HIGHCVE-2006-5020
Multiple PHP remote file inclusion vulnerabilities in SolidState 0.4 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the base_path parameter in manager/pages/ scripts including (1) AccountsPage.class.php, (2) AddInvoicePage.c... Read more
Affected Products : solidstate- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
7.5
HIGHCVE-2006-5044
Unspecified vulnerability in Prince Clan (Princeclan) Chess component (com_pcchess) 0.8 and earlier for Mambo and Joomla! has unspecified impact and attack vectors.... Read more
- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
7.5
HIGHCVE-2006-5042
Unspecified vulnerability in mosMedia (com_mosmedia) 1.0.8 and earlier for Joomla! has unspecified impact and attack vectors.... Read more
- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
4.0
MEDIUMCVE-2006-5018
ContentKeeper 123.25 and earlier places passwords in cleartext in an INPUT element in cgi-bin/ck/changepw.cgi, which allows remote authenticated users to obtain passwords via this URI.... Read more
Affected Products : contentkeeper- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
9.3
HIGHCVE-2006-4694
Unspecified vulnerability in PowerPoint in Microsoft Office 2000, Office XP and Office 2003 allows user-assisted attackers to execute arbitrary code via a crafted record in a PPT file, as exploited by malware such as Exploit:Win32/Controlppt.W, Exploit:Wi... Read more
- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
7.2
HIGHCVE-2006-5009
Unspecified vulnerability in xlock in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands and overwrite arbitrary files via unspecified vectors, possibly involving a buffer overflow.... Read more
Affected Products : aix- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
7.8
HIGHCVE-2006-5013
Sun Solaris 10 before patch 118855-16 (20060925), when run on x64 systems using IPv6, allows remote attackers to cause a denial of service (kernel panic) via crafted IPv6 packets.... Read more
Affected Products : solaris- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
7.5
HIGHCVE-2006-5015
PHP remote file inclusion vulnerability in hit.php in Kietu 3.2 allows remote attackers to execute arbitrary PHP code via an FTP URL in the url_hit parameter.... Read more
Affected Products : kietu- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
7.2
HIGHCVE-2006-5011
Untrusted search path vulnerability in snappd in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via a Trojan horse program, involving the "system subroutine".... Read more
Affected Products : aix- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
4.6
MEDIUMCVE-2006-5007
Untrusted search path vulnerability in uucp in IBM AIX 5.2.0 and 5.3.0 allows local users to local users to gain privileges via a Trojan horse program involving uux.... Read more
Affected Products : aix- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
10.0
HIGHCVE-2006-5008
Unspecified vulnerability in utape in IBM AIX 5.2.0 and 5.3.0 allows attackers to execute arbitrary commands and overwrite arbitrary files via unspecified vectors.... Read more
Affected Products : aix- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
7.8
HIGHCVE-2006-4924
sshd in OpenSSH before 4.4, when using the version 1 SSH protocol, allows remote attackers to cause a denial of service (CPU consumption) via an SSH packet that contains duplicate blocks, which is not properly handled by the CRC compensation attack detect... Read more
Affected Products : openssh- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
5.0
MEDIUMCVE-2006-5002
Unspecified vulnerability in IBM Inventory Scout for AIX 2.2.0.0 through 2.2.0.9 (invscoutClient_VPD_Survey) allows attackers to overwrite arbitrary files via unspecified vectors.... Read more
- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
6.6
MEDIUMCVE-2006-5012
Unspecified vulnerability in Sun Solaris 8, 9, and 10 before 20060925 allows local users to cause a denial of service (disable syslog) and prevent security messages from being logged via unspecified vectors.... Read more
- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
7.2
HIGHCVE-2006-5003
Unspecified vulnerability in the named8 command in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via unspecified vectors.... Read more
Affected Products : aix- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
9.0
HIGHCVE-2006-5014
Unspecified vulnerability in cPanel before 10.9.0 12 Tree allows remote authenticated users to gain privileges via unspecified vectors in (1) mysqladmin and (2) hooksadmin.... Read more
Affected Products : cpanel- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
7.2
HIGHCVE-2006-5006
Buffer overflow in cfgmgr in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary code via a long directory path argument.... Read more
Affected Products : aix- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
7.2
HIGHCVE-2006-5010
Untrusted search path vulnerability in acctctl in IBM AIX 5.3.0 allows local users to execute arbitrary commands by modifying the path to point to a malicious mkdir program.... Read more
Affected Products : aix- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025
-
7.2
HIGHCVE-2006-5005
Unspecified vulnerability in bos.net.tcp.client in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via unspecified vectors involving /etc/slip.login.... Read more
Affected Products : aix- Published: Sep. 27, 2006
- Modified: Apr. 09, 2025