Show filters
217 Total Results
Displaying 151-160 of 217
Sort by:
Attacker Value
Unknown

CVE-2006-1710

Disclosure Date: April 11, 2006 (last updated October 04, 2023)
SQL injection vulnerability in admin.php in Design Nation DNGuestbook 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) email and (2) id parameters.
0
Attacker Value
Unknown

CVE-2006-1698

Disclosure Date: April 11, 2006 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Matt Wright Guestbook 2.3.1 allows remote attackers to execute arbitrary web script or HTML via the (1) url, (2) city, (3) state, or (4) country parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information, although it is likely that they are the result of post-disclosure analysis.
0
Attacker Value
Unknown

CVE-2006-1697

Disclosure Date: April 11, 2006 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Matt Wright Guestbook 2.3.1 allows remote attackers to execute arbitrary web script or HTML via the (1) Your Name, (2) E-Mail, or (3) Comments fields when posting a message.
0
Attacker Value
Unknown

CVE-2006-1683

Disclosure Date: April 11, 2006 (last updated October 04, 2023)
SQL injection vulnerability in admin/login.php in Chipmunk Guestbook allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the User name.
0
Attacker Value
Unknown

CVE-2006-1256

Disclosure Date: March 19, 2006 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in guestbook.php in Soren Boysen (SkullSplitter) PHP Guestbook 2.6 allows remote attackers to inject arbitrary web script or HTML via the url parameter.
0
Attacker Value
Unknown

CVE-2006-1071

Disclosure Date: March 08, 2006 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in index.php in DVguestbook 1.2.2 allows remote attackers to inject arbitrary web script or HTML via the page parameter.
0
Attacker Value
Unknown

CVE-2006-1070

Disclosure Date: March 08, 2006 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in dv_gbook.php in DVguestbook 1.0 allows remote attackers to inject arbitrary web script or HTML via the f parameter.
0
Attacker Value
Unknown

CVE-2006-0603

Disclosure Date: February 08, 2006 (last updated February 22, 2025)
Multiple cross-site scripting vulnerabilities in signed.php in Hinton Design phphg Guestbook 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) location, (2) website, or (3) message parameter.
0
Attacker Value
Unknown

CVE-2006-0604

Disclosure Date: February 08, 2006 (last updated February 22, 2025)
check.php in Hinton Design phphg Guestbook 1.2 does not check the user password when authenticating via cookies, which allows remote attackers to gain unauthorized access.
0
Attacker Value
Unknown

CVE-2006-0602

Disclosure Date: February 08, 2006 (last updated February 22, 2025)
Multiple SQL injection vulnerabilities in Hinton Design phphg Guestbook 1.2 allow remote attackers to execute arbitrary SQL commands via the (1) username parameter to check.php or the id parameter to (2) admin/edit_smilie.php, (3) admin/add_theme.php, (4) admin/ban_ip.php, (5) admin/add_lang.php, or (6) admin/edit_filter.php.
0