Primary Vendor -- Product | Description | | CVSS Score | Source & Patch Info | 3Com -- TippingPoint SMS Server
| The web management interface in 3Com TippingPoint SMS Server before 2.2.1.4478 does not restrict access to certain directories, which might allow remote attackers to obtain potentially sensitive information such as configuration settings. | | 2.3 | CVE-2006-0993 BUGTRAQ OTHER-REF FRSIRT
| acFTP -- acFTP
| acFTP 1.4 allows remote attackers to cause a denial of service (application crash) via a long string with "{" (brace) characters to the USER command. | | 2.3 | CVE-2006-2242 OTHER-REF BID FRSIRT OSVDB SECUNIA XF
| AngelineCMS -- AngelineCMS
| AngelineCMS 0.6.5 and earlier allow remote attackers to obtain sensitive information via a direct request for (1) adodb-access.inc.php, (2) adodb-ado.inc.php, (3) adodb-ado_access.inc, (4) adodb-ado_mssql.inc.php, (5) adodb-borland_ibase, (6) adodb-csv.inc.php, (7) adodb-db2.inc.php, (8) adodb-fbsql.inc.php, (9) adodb-firebird.inc.php, (10) adodb-ibase.inc.php, (11) adodb-informix.inc.php, (12) adodb-informix72.inc, (13) adodb-mssql.inc.php, (14) adodb-mssqlpo.inc.php, (15) adodb-mysql.inc.php, (16) adodb-mysqlt.inc.php, (17) adodb-oci8.inc.php, (18) adodb-oci805.inc.php, (19) adodb-oci8po.inc.php, and (20) adodb-odbc.inc.php, which reveal the path in various error messages; and via a direct request for the (21) lib/system/ directory and (22) possibly other lib/ directories, which provide a directory listing and "architecture view." | | 2.3 | CVE-2006-2329 BUGTRAQ OTHER-REF
| Apple -- Mac OS X
| Multiple Apple Mac OS X 10.4 applications might allow context-dependent attackers to cause a denial of service (application crash) via a crafted EXR image file, which triggers the crash when opening a folder using Finder, displaying the image in Safari, or using Preview to open the file. | | 2.3 | CVE-2006-2277 BUGTRAQ
| Arabless -- SaphpLesson
| SaphpLesson 3.0 does not initialize array variables, which allows remote attackers to obtain the full path via an non-array (1) hrow parameter to (a) show.php or (b) index.php; the (2) Lsnrow parameter to (c) showcat.php; or the (3) rows parameter to index.php. | | 2.3 | CVE-2006-2278 BUGTRAQ FRSIRT SECUNIA
| Avahi -- Avahi
| Avahi before 0.6.10 allows local users to cause a denial of service (mDNS/DNS-SD service disconnect) via unspecified mDNS name conflicts. | | 3.3 | CVE-2006-2288 OTHER-REF BID SECUNIA
| Avahi -- Avahi
| Buffer overflow in avahi-core in Avahi before 0.6.10 allows local users to execute arbitrary code via unknown vectors. | | 1.6 | CVE-2006-2289 OTHER-REF BID SECUNIA
| CutePHP -- CuteNews
| Multiple cross-site scripting (XSS) vulnerabilities in search.php in CuteNews 1.4.1 and earlier, and possibly 1.4.5, allow remote attackers to inject arbitrary web script or HTML via the (1) user, (2) story, or (3) title parameters. | | 2.3 | CVE-2006-2249 BUGTRAQ OTHER-REF BID FRSIRT SECUNIA
| D-Link -- DSL-G604T
| Directory traversal vulnerability in webcm in the D-Link DSL-G604T Wireless ADSL Router Modem allows remote attackers to read arbitrary files via an absolute path in the getpage parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | | 2.3 | CVE-2006-2337 OTHER-REF SECTRACK
| Drupal -- Drupal
| Cross-site scripting (XSS) vulnerability in the project module (project.module) in Drupal 4.5 and 4.6 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors. | | 2.3 | CVE-2006-2260 OTHER-REF BID FRSIRT SECUNIA
| Fujitsu -- NetShelter/FW-L Fujitsu -- NetShelter/FW-M Fujitsu -- NetShelter/FW-P Fujitsu -- NetShelter/FW
| Unspecified vulnerability in the (1) web cache or (2) web proxy in Fujitsu NetShelter/FW allows remote attackers to cause a denial of service (device unresponsiveness) via certain DNS packets, as demonstrated by the OUSPG PROTOS DNS test suite. | | 2.3 | CVE-2006-2240 OTHER-REF OTHER-REF BID SECUNIA
| Ideal Science -- IdealBB
| Unspecified vulnerability in Ideal Science Ideal BB 1.5.4a and earlier allows remote attackers to read arbitrary files under the web root via unspecified attack vectors related to the OpenTextFile method in Scripting.FileSystemObject. | | 2.3 | CVE-2006-2317 BUGTRAQ OTHER-REF BID
| Ideal Science -- IdealBB
| Incomplete blacklist vulnerability in Ideal Science Ideal BB 1.5.4a and earlier allows remote attackers to upload and execute an ASP script via a ".asa" file, which bypasses the check for the ".asp" extension but is executable on the server. | | 3.3 | CVE-2006-2318 BUGTRAQ IDEAL SCIENCE BID
| Ideal Science -- IdealBB
| Ideal Science Ideal BB 1.5.4a and earlier does not properly check file extensions before permitting an upload, which allows remote attackers to upload and execute an ASP script via a 0x00 character before the ".asp" portion of the filename. | | 2.3 | CVE-2006-2319 BUGTRAQ OTHER-REF BID
| Ideal Science -- IdealBB
| Multiple cross-site scripting (XSS) vulnerabilities in Ideal Science Ideal BB 1.5.4a and earlier allow remote attackers to inject arbitrary web script or HTML via unknown vectors. NOTE: due to lack of details from the researcher, it is not clear whether this overlaps CVE-2004-2207. | | 2.3 | CVE-2006-2321 BUGTRAQ OTHER-REF BID
| Intel -- Intel PROset/Wireless
| S24EvMon.exe in the Intel PROset/Wireless software, possibly 10.1.0.33, uses a S24EventManagerSharedMemory shared memory section with weak permissions, which allows local users to read or modify passwords or other data, or cause a denial of service. | | 2.3 | CVE-2006-2316 BUGTRAQ REVERSE MODE BID FRSIRT
| Internet Key Exchange -- Internet Key Exchange
| The Internet Key Exchange version 1 (IKEv1) implementation in the libike library in Solaris 9 and 10 allows remote attackers to cause a denial of service (in.iked daemon crash) via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. | | 2.3 | CVE-2006-2298 OTHER-REF OTHER-REF SUNALERT BID FRSIRT SECTRACK SECUNIA
| InterVations -- FileCOPA
| Buffer overflow in filecpnt.exe in FileCOPA 1.01 allows remote attackers to cause a denial of service (application crash) via a username with a large number of newline characters. | | 2.3 | CVE-2006-2254 OTHER-REF FRSIRT SECUNIA BID
| Kerio -- WinRoute Firewall
| Kerio WinRoute Firewall before 6.2.1 allows remote attackers to cause a denial of service (application crash) via unknown vectors in the "email protocol inspectors," possibly (1) SMTP and (2) POP3. | | 2.3 | CVE-2006-2267 KERIO FRSIRT SECUNIA BID SECTRACK
| Linux -- Linux Kernel
| Memory leak in __setlease in fs/locks.c in Linux kernel before 2.6.16.16 allows attackers to cause a denial of service (memory consumption) via unspecified actions related to an "uninitialised return value," aka "slab leak." | | 1.6 | CVE-2006-1859 OTHER-REF OTHER-REF FRSIRT SECUNIA
| Linux -- Linux Kernel
| lease_init in fs/locks.c in Linux kernel before 2.6.16.16 allows attackers to cause a denial of service (fcntl_setlease lockup) via actions that cause lease_init to free a lock that might not have been allocated on the stack. | | 1.6 | CVE-2006-1860 OTHER-REF OTHER-REF OTHER-REF BID FRSIRT SECUNIA
| Linux -- SCTP
| Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (kernel panic) via incoming IP fragmented (1) COOKIE_ECHO and (2) HEARTBEAT SCTP control chunks. | | 3.3 | CVE-2006-2272 FULLDISC MU SECURITY OTHER-REF FRSIRT SECUNIA
| Linux -- SCTP
| Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (infinite recursion and crash) via a packet that contains two or more DATA fragments, which causes an skb pointer to refer back to itself when the full message is reassembled, leading to infinite recursion in the sctp_skb_pull function. | | 2.3 | CVE-2006-2274 OTHER-REF
| Linux -- SCTP
| Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (deadlock) via a large number of small messages to a receiver application that cannot process the messages quickly enough, which leads to "spillover of the receive buffer." | | 2.3 | CVE-2006-2275 OTHER-REF
| lksctp -- lksctp
| The ECNE chunk handling in Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (kernel panic) via an unexpected chunk when the session is in CLOSED state. | | 3.3 | CVE-2006-2271 FULLDISC OTHER-REF OTHER-REF FRSIRT SECUNIA
| MaxxCode -- MaxxSchedule
| Cross-site scripting (XSS) vulnerability in Logon.asp in MaxxSchedule 1.0 allows remote attackers to inject arbitrary web script or HTML via the Error parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | | 1.9 | CVE-2006-2258 BID FRSIRT SECUNIA
| Microsoft -- Windows NT Microsoft -- Windows 2000 Microsoft -- Windows Server 2003 Microsoft -- Microsoft Distributed Transaction Coordinator Microsoft -- Windows XP
| Microsoft Distributed Transaction Coordinator (MSDTC) for Windows NT 4.0, 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote attackers to cause a denial of service (crash) via a BuildContextW request with a large (1) UuidString or (2) GuidIn of a certain length, which causes an out-of-range memory access, aka the MSDTC Denial of Service Vulnerability. NOTE: this is a variant of CVE-2005-2119. | | 2.3 | CVE-2006-1184 BUGTRAQ OTHER-REF MS BID FRSIRT SECUNIA
| Microsoft -- Infotech Storage System Libary
| Heap-based buffer overflow in Microsoft Infotech Storage System Library (itss.dll) allows user-complicit attackers to execute arbitrary code via a crafted CHM / ITS file that triggers the overflow while decompiling. | | 3.7 | CVE-2006-2297 BUGTRAQ BID
| Microsoft -- Windows 2000 Microsoft -- Windows XP
| The RtlDosPathNameToNtPathName_U API function in NTDLL.DLL in Microsoft Windows 2000 SP4 and XP SP2 does not properly convert DOS style paths with trailing spaces into NT style paths, which allows context-dependent attackers to create files that cannot be accessed through the expected DOS path or prevent access to other similarly named files in the same directory, which prevents those files from being detected or disinfected by certain anti-virus and anti-spyware software. | | 1.6 | CVE-2006-2334 BUGTRAQ OTHER-REF BID
| Mozilla -- Firefox
| Mozilla Firefox 1.5.0.3 allows remote attackers to cause a denial of service via a web page with a large number of IMG elements in which the SRC attribute is a mailto URI. NOTE: another researcher found that the web page caused a temporary browser slowdown instead of a crash. | | 1.9 | CVE-2006-2332 BUGTRAQ BUGTRAQ
| myWebland -- MyBloggie
| Cross-site scripting (XSS) vulnerability in myWebland MyBloggie 2.1.3 and earlier allows remote attackers to inject arbitrary web script or HTML via a JavaScript event in a BBCode img tag. | | 2.3 | CVE-2006-2269 BUGTRAQ BID
| Northern Solutions -- Xeneo Web Server
| Xeneo Web Server 2.2.22.0 allows remote attackers to obtain the source code of script files via crafted requests containing dot, space, and slash characters in the file extension. | | 2.3 | CVE-2006-2248 OTHER-REF BID FRSIRT OSVDB SECUNIA
| Ocean12 Technologies -- Calendar Manager Pro
| Cross-site scripting vulnerability in admin/main.asp in Ocean12 Calendar Manager Pro 1.00 allows remote attackers to inject arbitrary web script or HTML via the date parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | | 1.9 | CVE-2006-2265 BID FRSIRT SECUNIA
| OnlyScript.info -- Online Universal Payment System Script
| Directory traversal vulnerability in index.php in OnlyScript.info Online Universal Payment System Script allows remote attackers to read arbitrary files via directory traversal sequences in the read parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | | 2.3 | CVE-2006-2326 BID FRSIRT SECUNIA
| openEngine -- openEngine
| Directory traversal vulnerability in website.php in openEngine 1.8 Beta 2 and earlier allows remote attackers to list arbitrary directories and read arbitrary files via a .. (dot dot) in the template parameter. | | 2.3 | CVE-2006-2280 BUGTRAQ BID
| PunBB -- PunBB
| Cross-site scripting (XSS) vulnerability in misc.php in PunBB 1.2.11 allows remote attackers to inject arbitrary web script or HTML via the req_message parameter, because the value of the redirect_url parameter is not sanitized. | | 2.3 | CVE-2006-2227 BUGTRAQ SECUNIA BID FRSIRT
| Quagga -- Quagga Routing Software Suite
| bgpd in Quagga 0.98 and 0.99 before 20060504 allows local users to cause a denial of service (CPU consumption) via a certain sh ip bgp command entered in the telnet interface. | | 2.3 | CVE-2006-2276 MLIST OTHER-REF OSVDB
| Roger Aelbrecht -- TZipBuilder
| Buffer overflow in TZipBuilder 1.79.03.01 allows remote attackers to execute arbitrary code via a ZIP archive that contains a file with a long file name. | | 2.3 | |