LiveActive security incident?Get immediate response
CVE archive

February 2006

Browse CVE records published in February 2006, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 591 matching CVEs · Page 7 of 12.

Unknown · CVSS Not scored

CVE-2006-0759: Multiple SQL injection vulnerabilities in HiveMail 1.3 and earlier allow remote attackers to execute arbitr...

Multiple SQL injection vulnerabilities in HiveMail 1.3 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the contactgroupid parameter in addressbook.update.php, (2) the messageid parameter in addressbook.add.php, (3) the folderid parameter in folders.update.php, and possibly certain parameters in (4) calendar.event.php, (5) index.php, (6) pop.download.php, (7) read.bounce.php, (8) rules.block.php, (9) language.php, and (10) certain other scripts; and allow remote authenticated users to execute arbitrary SQL commands via (11) the folderid parameter in index.php and (12) possibly other parameters in certain other scripts, because $_SERVER['PHP_SELF'] is improperly handled.

Published Feb 18, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0771: Format string vulnerability in PunkBuster 1.180 and earlier, as used by Soldier of Fortune II and possibly...

Format string vulnerability in PunkBuster 1.180 and earlier, as used by Soldier of Fortune II and possibly other games, allows remote attackers to cause a denial of service (server crash) and possibly execute arbitrary code via format string specifiers in invalid cvar values, which are not properly handled when the server kicks the player and records the reason.

Published Feb 18, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0757: Multiple eval injection vulnerabilities in HiveMail 1.3 and earlier allow remote attackers to execute arbit...

Multiple eval injection vulnerabilities in HiveMail 1.3 and earlier allow remote attackers to execute arbitrary PHP code via (1) the contactgroupid parameter in addressbook.update.php, (2) the messageid parameter in addressbook.add.php, (3) the folderid parameter in folders.update.php, and possibly certain parameters in (4) calendar.event.php, (5) index.php, (6) pop.download.php, (7) read.bounce.php, (8) rules.block.php, (9) language.php, and (10) certain other scripts, as demonstrated by an addressbook.update.php request with a contactgroupid value of phpinfo() preceded by facilitators.

Published Feb 18, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0733: Cross-site scripting (XSS) vulnerability in WordPress 2.0.0 allows remote attackers to inject arbitrary web...

Cross-site scripting (XSS) vulnerability in WordPress 2.0.0 allows remote attackers to inject arbitrary web script or HTML via scriptable attributes such as (1) onfocus and (2) onblur in the "author's website" field. NOTE: followup comments to the researcher's web log suggest that this issue is only exploitable by the same user who injects the XSS, so this might not be a vulnerability

Published Feb 16, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0756: dotProject 2.0.1 and earlier leaves (1) phpinfo.php and (2) check.php accessible under the /docs/ directory...

dotProject 2.0.1 and earlier leaves (1) phpinfo.php and (2) check.php accessible under the /docs/ directory after installation, which allows remote attackers to obtain sensitive configuration information. NOTE: the vendor disputes this issue, saying that it could only occur if the administrator ignores the installation instructions as well as warnings generated by check.php

Published Feb 18, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0760: LightTPD 1.4.8 and earlier, when the web root is on a case-insensitive filesystem, allows remote attackers...

LightTPD 1.4.8 and earlier, when the web root is on a case-insensitive filesystem, allows remote attackers to bypass URL checks and obtain sensitive information via file extensions with unexpected capitalization, as demonstrated by a request for index.PHP when the configuration invokes the PHP interpreter only for ".php" names.

Published Feb 18, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0770: Cross-site scripting (XSS) vulnerability in calendar.php in MyBulletinBoard (MyBB) 1.0.4 allows remote atta...

Cross-site scripting (XSS) vulnerability in calendar.php in MyBulletinBoard (MyBB) 1.0.4 allows remote attackers to inject arbitrary web script or HTML via a URL that is not sanitized before being returned as a link in "advanced details". NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Published Feb 18, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0738: Multiple format string vulnerabilities in eStara SIP softphone allow remote attackers to cause a denial of...

Multiple format string vulnerabilities in eStara SIP softphone allow remote attackers to cause a denial of service (hang) via SIP INVITE requests with format string specifiers in the SDP session description, as demonstrated using (1) the field name, (2) the o field (owner/creator and session identifier), or (3) the m field (media name and transport address).

Published Feb 17, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0732: Directory traversal vulnerability in SAP Business Connector (BC) 4.6 and 4.7 allows remote attackers to rea...

Directory traversal vulnerability in SAP Business Connector (BC) 4.6 and 4.7 allows remote attackers to read or delete arbitrary files via the fullName parameter to (1) sapbc/SAP/chopSAPLog.dsp or (2) invoke/sap.monitor.rfcTrace/deleteSingle. Details will be updated after the grace period has ended. NOTE: SAP Business Connector is an OEM version of webMethods Integration Server. webMethods states that this issue can only occur when the product is installed as root/admin, and if the attacker has access to a general purpose port; however, both are discouraged in the documentation. In addition, the attacker must already have acquired administrative privileges through other means.

Published Feb 16, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0722: settings.php in Reamday Enterprises Magic Downloads 1.1.3, when register_globals is enabled, allows remote...

settings.php in Reamday Enterprises Magic Downloads 1.1.3, when register_globals is enabled, allows remote attackers to modify program behavior, potentially bypassing authentication controls, via modified (1) action, (2) passwd, (3) admin_password, (4) new_passwd, and (5) confirm_passwd variables, which are not initialized.

Published Feb 16, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0735: Cross-site scripting (XSS) vulnerability in BBcode.pm in M.

Cross-site scripting (XSS) vulnerability in BBcode.pm in M. Blom HTML::BBCode 1.04 and earlier, as used in products such as My Blog before 1.65, allows remote attackers to inject arbitrary Javascript via a javascript URI in an (1) img or (2) url BBcode tag.

Published Feb 16, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0754: dotProject 2.0.1 and earlier allows remote attackers to obtain sensitive information via direct requests wi...

dotProject 2.0.1 and earlier allows remote attackers to obtain sensitive information via direct requests with an invalid baseDir to certain PHP scripts in the db directory, which reveal the path in an error message. NOTE: the vendor disputes this issue, saying that it could only occur if the administrator ignores the installation instructions as well as warnings generated by check.php

Published Feb 18, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0727: SQL injection vulnerability in mstrack.php in MusOX DF MSAnalysis (DFMSA), as used in some environments tha...

SQL injection vulnerability in mstrack.php in MusOX DF MSAnalysis (DFMSA), as used in some environments that use CPG-Nuke Dragonfly CMS, allows remote attackers to trigger path disclosure from a SQL syntax error, and possibly execute arbitrary SQL commands, via certain query data, probably involving the profile name.

Published Feb 16, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0730: Multiple unspecified vulnerabilities in Dovecot before 1.0beta3 allow remote attackers to cause a denial of...

Multiple unspecified vulnerabilities in Dovecot before 1.0beta3 allow remote attackers to cause a denial of service (application crash or hang) via unspecified vectors involving (1) "potential hangs" in the APPEND command and "potential crashes" in (2) dovecot-auth and (3) imap/pop3-login. NOTE: vector 2 might be related to a double free vulnerability.

Published Feb 16, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0713: Directory traversal vulnerability in LinPHA 1.0 allows remote attackers to include arbitrary files via ..

Directory traversal vulnerability in LinPHA 1.0 allows remote attackers to include arbitrary files via .. (dot dot) sequences in the (1) lang parameter in docs/index.php and the language parameter in (2) install/install.php, (3) install/sec_stage_install.php, (4) install/third_stage_install.php, and (5) install/forth_stage_install.php. NOTE: direct static code injection is resultant from this issue, as demonstrated by inserting PHP code into the username, which is inserted into linpha.log, which is accessible from the directory traversal.

Published Feb 15, 2006 · Updated Aug 7, 2024

Unknown · CVSS Not scored

CVE-2006-0724: profile.php in Reamday Enterprises Magic News Lite 1.2.3, when register_globals is enabled, allows remote a...

profile.php in Reamday Enterprises Magic News Lite 1.2.3, when register_globals is enabled, allows remote attackers to modify program behavior, potentially bypassing authentication controls, via modified (1) action, (2) passwd, (3) admin_password, (4) new_passwd, and (5) confirm_passwd variables, which are not initialized.

Published Feb 16, 2006 · Updated Aug 7, 2024