Show filters
100 Total Results
Displaying 91-100 of 100
Sort by:
Attacker Value
Unknown
CVE-2006-0701
Disclosure Date: February 15, 2006 (last updated February 22, 2025)
readfolder.php in imageVue 16.1 allows remote attackers to list directories via modified path and ext parameters.
0
Attacker Value
Unknown
CVE-2006-0703
Disclosure Date: February 15, 2006 (last updated February 22, 2025)
Unspecified vulnerability in index.php in imageVue 16.1 has unknown impact, probably a cross-site scripting (XSS) vulnerability involving the query string that is not quoted when inserted into style and body tags, as demonstrated using a bgcol parameter.
0
Attacker Value
Unknown
CVE-2006-0702
Disclosure Date: February 15, 2006 (last updated February 22, 2025)
admin/upload.php in imageVue 16.1 allows remote attackers to upload arbitrary files to certain allowed folders via .. (dot dot) sequences in the path parameter. NOTE: due to the lack of details, the specific vulnerability type cannot be determined, although it might be due to directory traversal.
0
Attacker Value
Unknown
CVE-2005-4613
Disclosure Date: December 31, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in VUBB alpha rc1 allows remote attackers to inject arbitrary web script or HTML via unspecified fields in the user edit profile.
0
Attacker Value
Unknown
CVE-2005-4612
Disclosure Date: December 31, 2005 (last updated February 22, 2025)
Multiple SQL injection vulnerabilities in VUBB alpha rc1 allow remote attackers to execute arbitrary SQL commands via the (1) f parameter to viewforum.php, (2) t parameter to viewtopic.php, and (3) view parameter to usercp.php.
0
Attacker Value
Unknown
CVE-2005-3513
Disclosure Date: November 06, 2005 (last updated February 22, 2025)
index.php in VUBB alpha rc1 allows remote attackers to obtain the installation path of the application via a viewforum action with the f parameter set to a single quote (').
0
Attacker Value
Unknown
CVE-2005-3512
Disclosure Date: November 06, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in index.php in VUBB alpha rc1 allows remote attackers to inject arbitrary web script or HTML via the t parameter in a newreply action.
0
Attacker Value
Unknown
CVE-2005-1035
Disclosure Date: April 05, 2005 (last updated February 22, 2025)
Multiple buffer overflows in Pavuk before 0.9.32 have unknown attack vectors and impact.
0
Attacker Value
Unknown
CVE-2004-1437
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Multiple buffer overflows in the digest authentication functionality in Pavuk 0.9.28-r2 and earlier allow remote attackers to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2004-0456
Disclosure Date: December 06, 2004 (last updated February 22, 2025)
Stack-based buffer overflow in pavuk 0.9pl28, 0.9pl27, and possibly other versions allows remote web sites to execute arbitrary code via a long HTTP Location header.
0