LiveActive security incident?Get immediate response
CVE archive

February 2006

Browse CVE records published in February 2006, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 591 matching CVEs · Page 4 of 12.

Unknown · CVSS Not scored

CVE-2006-0937: U.N.U.

U.N.U. Mailgust 1.9 allows remote attackers to obtain sensitive information via a direct request to index.php with method=showfullcsv, which reveals the POP3 server configuration, including account name and password.

Published Feb 28, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0917: Melange Chat Server (aka M-Chat), when accessed via a web browser, automatically sends cookies and other se...

Melange Chat Server (aka M-Chat), when accessed via a web browser, automatically sends cookies and other sensitive information for a server to any port specified in the associated link, which allows local users on that server to read the cookies from HTTP headers and possibly gain sensitive information, such as credentials, by setting up a listening port and reading the credentials when the victim clicks on the link.

Published Feb 28, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0927: Multiple cross-site scripting (XSS) vulnerabilities in the JGS-XA JGS-Gallery Addon 4.0.0 and earlier for W...

Multiple cross-site scripting (XSS) vulnerabilities in the JGS-XA JGS-Gallery Addon 4.0.0 and earlier for Woltlab Burning Board (wBB) 2.x allow remote attackers to inject arbitrary web script or HTML via the (1) userid parameter in (a) jgs_galerie_slideshow.php and (b) jgs_galerie_scroll.php, and the (2) katid parameter in (c) jgs_galerie_slideshow.php.

Published Feb 28, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0920: Oi!

Oi! Email Marketing System 3.0 (aka Oi! 3) stores the server's FTP password in cleartext on a Configuration web page, which allows local users with superadministrator privileges, or attackers who have obtained access to the web page, to view the password.

Published Feb 28, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0922: CubeCart 3.0 through 3.6 does not properly check authorization for an administration session because of a m...

CubeCart 3.0 through 3.6 does not properly check authorization for an administration session because of a missing auth.inc.php include, which results in an absolute path traversal vulnerability in FileUpload in connector.php (aka upload.php) that allows remote attackers to upload arbitrary files via a modified CurrentFolder parameter in a direct request to admin/filemanager/upload.php.

Published Feb 28, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0886: Cross-site scripting (XSS) vulnerability in register.php in DEV web management system 1.5 allows remote att...

Cross-site scripting (XSS) vulnerability in register.php in DEV web management system 1.5 allows remote attackers to inject arbitrary web script or HTML via the "City/Region" field (mesto variable). NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Published Feb 25, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0891: Multiple directory traversal vulnerabilities in NOCC Webmail 1.0 allow remote attackers to include arbitrar...

Multiple directory traversal vulnerabilities in NOCC Webmail 1.0 allow remote attackers to include arbitrary files via .. (dot dot) sequences and a trailing NULL (%00) byte in (1) the _SESSION['nocc_theme'] parameter in (a) html/footer.php; and (2) the lang and (3) theme parameters and the (4) Accept-Language HTTP header field, when force_default_lang is disabled, in (b) index.php, as demonstrated by injecting PHP code into a profile and accessing it using the lang parameter in index.php.

Published Feb 25, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0909: Invision Power Board (IPB) 2.1.4 and earlier allows remote attackers to view sensitive information via a di...

Invision Power Board (IPB) 2.1.4 and earlier allows remote attackers to view sensitive information via a direct request to multiple PHP scripts that include the full path in error messages, including (1) PEAR/Text/Diff/Renderer/inline.php, (2) PEAR/Text/Diff/Renderer/unified.php, (3) PEAR/Text/Diff3.php, (4) class_db.php, (5) class_db_mysql.php, and (6) class_xml.php in the ips_kernel/ directory; (7) mysql_admin_queries.php, (8) mysql_extra_queries.php, (9) mysql_queries.php, and (10) mysql_subsm_queries.php in the sources/sql directory; (11) sources/acp_loaders/acp_pages_components.php; (12) sources/action_admin/member.php and (13) sources/action_admin/paysubscriptions.php; (14) login.php, (15) messenger.php, (16) moderate.php, (17) paysubscriptions.php, (18) register.php, (19) search.php, (20) topics.php, (21) and usercp.php in the sources/action_public directory; (22) bbcode/class_bbcode.php, (23) bbcode/class_bbcode_legacy.php, (24) editor/class_editor_rte.php, (25) editor/class_editor_std.php, (26) post/class_post.php, (27) post/class_post_edit.php, (28) post/class_post_new.php, (29) and post/class_post_reply.php in the sources/classes directory; (30) sources/components_acp/registration_DEPR.php; (31) sources/handlers/han_paysubscriptions.php; (32) func_usercp.php; (33) search_mysql_ftext.php, and (34) search_mysql_man.php in the sources/lib/ directory; and (35) convert/auth.php.bak, (36) external/auth.php, and (37) ldap/auth.php in the sources/loginauth directory.

Published Feb 28, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0911: NmService.exe in Ipswitch WhatsUp Professional 2006 allows remote attackers to cause a denial of service (C...

NmService.exe in Ipswitch WhatsUp Professional 2006 allows remote attackers to cause a denial of service (CPU consumption) via crafted requests to Login.asp, possibly involving the (1) "In]" and (2) "b;tnLogIn" parameters, or (3) malformed btnLogIn parameters, possibly involving missing "[" (open bracket) or "[" (closing bracket) characters, as demonstrated by "&btnLogIn=[Log&In]=&" or "&b;tnLogIn=[Log&In]=&" in the URL. NOTE: due to the lack of diagnosis by the original researcher, the precise nature of the vulnerability is unclear.

Published Feb 28, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0894: Multiple cross-site scripting (XSS) vulnerabilities in NOCC Webmail 1.0 allow remote attackers to inject ar...

Multiple cross-site scripting (XSS) vulnerabilities in NOCC Webmail 1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the html_error_occurred parameter in error.php, (2) html_filter_select parameter in filter_prefs.php, (3) html_no_mail parameter in no_mail.php, the (4) page_line, (5) prev, and (6) next parameters in html_bottom_table.php, and the (7) _SESSION['nocc_theme'] parameter in footer.php.

Published Feb 25, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0860: Multiple cross-site scripting (XSS) vulnerabilities in Michael Salzer Guestbox 0.6, and other versions befo...

Multiple cross-site scripting (XSS) vulnerabilities in Michael Salzer Guestbox 0.6, and other versions before 0.8, allow remote attackers to inject arbitrary web script or HTML via (1) HTML tags that follow a "http://" string, which bypasses a regular expression check, and (2) other unspecified attack vectors.

Published Feb 23, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0846: Multiple cross-site scripting (XSS) vulnerabilities in Leif M.

Multiple cross-site scripting (XSS) vulnerabilities in Leif M. Wright's Blog 3.5 allow remote attackers to inject arbitrary web script or HTML via the (1) Referer and (2) User-Agent HTTP headers, which are stored in a log file and not sanitized when the administrator views the "Log" page, possibly using the ViewCommentsLog function.

Published Feb 22, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0869: Directory traversal vulnerability in the "remember me" feature in liveuser.php in PHP Extension and Applica...

Directory traversal vulnerability in the "remember me" feature in liveuser.php in PHP Extension and Application Repository (PEAR) LiveUser 0.16.8 and earlier allows remote attackers to determine file existence, and possibly delete arbitrary files with short pathnames or possibly read arbitrary files, via a .. (dot dot) in the store_id value of a cookie.

Published Feb 23, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0798: Multiple directory traversal vulnerabilities in the IMAP service in Macallan Mail Solution before 4.8.05.00...

Multiple directory traversal vulnerabilities in the IMAP service in Macallan Mail Solution before 4.8.05.004 allow remote authenticated users to read e-mails of other users or create, modify, or delete directories via a .. (dot dot) in the argument to the (1) CREATE, (2) SELECT, (3) DELETE, or (4) RENAME commands.

Published Feb 19, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0845: Leif M.

Leif M. Wright's Blog 3.5 allows remote authenticated users with administrative privileges to execute arbitrary programs, including shell commands, by configuring the sendmail path to a malicious pathname.

Published Feb 22, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0834: Uniden UIP1868P VoIP Telephone and Router has a default password of admin for the web-based configuration u...

Uniden UIP1868P VoIP Telephone and Router has a default password of admin for the web-based configuration utility, which allows remote attackers to obtain sensitive information on the device such as telephone numbers called, and possibly connect to other hosts. NOTE: it is possible that this password was configured by a reseller, not the original vendor; if so, then this is not a vulnerability in the product.

Published Feb 22, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0843: Leif M.

Leif M. Wright's Blog 3.5 stores the config file and other txt files under the web root with insufficient access control, which allows remote attackers to read the administrator's password.

Published Feb 22, 2006 · Updated Aug 7, 2024