Show filters
403 Total Results
Displaying 331-340 of 403
Sort by:
Attacker Value
Unknown

CVE-2006-3075

Disclosure Date: June 19, 2006 (last updated October 04, 2023)
Multiple PHP remote file inclusion vulnerabilities in PictureDis Professional 1.33 Build 234 and earlier and PictureDis Photoalbum 4.82 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the lang parameter to files in photoalbum/ including (1) thumstbl.php, (2) wpfiles.php, and (3) wallpapr.php.
0
Attacker Value
Unknown

CVE-2006-3028

Disclosure Date: June 15, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in stat_modules/users_age/module.php in Minerva 2.0.8a Build 237 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
0
Attacker Value
Unknown

CVE-2006-2662

Disclosure Date: June 02, 2006 (last updated October 04, 2023)
VMware Server before RC1 does not clear user credentials from memory after a console connection is made, which might allow local attackers to gain privileges.
0
Attacker Value
Unknown

CVE-2006-2085

Disclosure Date: April 29, 2006 (last updated October 04, 2023)
Multiple buffer overflows in (1) CxAce60.dll and (2) CxAce60u.dll in SpeedProject Squeez 5.10 Build 4460, and SpeedCommander 10.52 Build 4450 and 11.01 Build 4450, allow user-assisted remote attackers to execute arbitrary code via an ACE archive that contains a file with a long filename.
0
Attacker Value
Unknown

CVE-2006-0965

Disclosure Date: March 02, 2006 (last updated February 22, 2025)
NCP Network Communication Secure Client 8.11 Build 146, and possibly other versions, allows local users to bypass security protections and configure privileged options via a long argument to ncpmon.exe, which provides access to alternate privileged menus, possibly due to a buffer overflow.
0
Attacker Value
Unknown

CVE-2006-0966

Disclosure Date: March 02, 2006 (last updated February 22, 2025)
NCP Network Communication Secure Client 8.11 Build 146, and possibly other versions, allows local users to cause a denial of service (CPU consumption) via a large number of arguments to ncprwsnt.exe, possibly due to a buffer overflow.
0
Attacker Value
Unknown

CVE-2006-0967

Disclosure Date: March 02, 2006 (last updated February 22, 2025)
NCP Network Communication Secure Client 8.11 Build 146, and possibly other versions, allows local users to cause a denial of service (memory usage and cpu utilization) via a flood of arbitrary UDP datagrams to ports 0 to 65000. NOTE: this issue was reported as a buffer overflow, but that term usually does not apply in flooding attacks.
0
Attacker Value
Unknown

CVE-2006-0964

Disclosure Date: March 02, 2006 (last updated February 22, 2025)
Client Firewall in NCP Network Communication Secure Client 8.11 Build 146, and possibly other versions, allows local users to bypass firewall program execution rules by replacing an allowed program with an arbitrary program.
0
Attacker Value
Unknown

CVE-2006-0968

Disclosure Date: March 02, 2006 (last updated February 22, 2025)
The ncprwsnt service in NCP Network Communication Secure Client 8.11 Build 146, and possibly other versions, allows local users to execute arbitrary code by modifying the connect.bat script, which is automatically executed by the service after a connection is established.
0
Attacker Value
Unknown

CVE-2006-0867

Disclosure Date: February 23, 2006 (last updated February 22, 2025)
Buffer overflow in certain versions of South River (aka SRT) WebDrive, possibly version 6.08 build 1131 and version 8, allows remote attackers to cause a denial of service (application crash and persistent erratic behavior) via a long string in the name entry field.
0