Show filters
115 Total Results
Displaying 111-115 of 115
Sort by:
Attacker Value
Unknown

CVE-2006-1201

Disclosure Date: March 14, 2006 (last updated February 22, 2025)
Directory traversal vulnerability in resetpw.php in eschew.net phpBannerExchange 2.0 and earlier, and other versions before 2.0 Update 5, allows remote attackers to read arbitrary files via a .. (dot dot) in the email parameter during a "Recover password" operation (recoverpw.php).
0
Attacker Value
Unknown

CVE-2004-2098

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in the banner engine (TBE) 5.0 allows remote attackers to execute arbitrary script as other users via the HTML banner view/preview capability.
0
Attacker Value
Unknown

CVE-2002-2411

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Buffer overflow in badmin.c in BannerWheel 1.0 allows remote attackers to execute arbitrary code via a long rcmd command.
0
Attacker Value
Unknown

CVE-2002-2342

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Bannermatic 1, 2, and 3 stores the (1) ban.log, (2) ban.bak, (3) ban.dat and (4) banmat.pwd data files under the web document root with insufficient access control, which allows attackers to obtain sensitive information via a direct request for the files.
0
Attacker Value
Unknown

CVE-2000-0469

Disclosure Date: February 02, 2000 (last updated February 22, 2025)
Selena Sol WebBanner 4.0 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
0