Show filters
16 Total Results
Displaying 11-16 of 16
Sort by:
Attacker Value
Unknown

CVE-2006-0607

Disclosure Date: February 08, 2006 (last updated February 22, 2025)
check.php in Hinton Design phphd 1.0 does not check passwords when certain cookies are provided, which allows remote attackers to bypass authentication.
0
Attacker Value
Unknown

CVE-2006-0602

Disclosure Date: February 08, 2006 (last updated February 22, 2025)
Multiple SQL injection vulnerabilities in Hinton Design phphg Guestbook 1.2 allow remote attackers to execute arbitrary SQL commands via the (1) username parameter to check.php or the id parameter to (2) admin/edit_smilie.php, (3) admin/add_theme.php, (4) admin/ban_ip.php, (5) admin/add_lang.php, or (6) admin/edit_filter.php.
0
Attacker Value
Unknown

CVE-2006-0608

Disclosure Date: February 08, 2006 (last updated February 22, 2025)
Multiple SQL injection vulnerabilities in Hinton Design phphd 1.0 allow remote attackers to execute arbitrary SQL commands via (1) the username parameter to check.php or (2) unknown attack vectors to scripts that display information from the database.
0
Attacker Value
Unknown

CVE-2006-0570

Disclosure Date: February 07, 2006 (last updated February 22, 2025)
Multiple SQL injection vulnerabilities in phpstatus 1.0, when gpc_magic_quotes is disabled, allow remote attackers to execute arbitrary SQL commands and bypass authentication via (1) the username parameter in check.php and (2) unknown attack vectors in the administrative interface.
0
Attacker Value
Unknown

CVE-2006-0571

Disclosure Date: February 07, 2006 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in phpstatus 1.0 allow remote attackers to inject arbitrary web script or HTML via unknown attack vectors in the administrative interface.
0
Attacker Value
Unknown

CVE-2006-0572

Disclosure Date: February 07, 2006 (last updated February 22, 2025)
phpstatus 1.0 does not require passwords when using cookies to identify a user, which allows remote attackers to bypass authentication.
0