CVE-2006-2016
- EPSS 8.22%
- Veröffentlicht 25.04.2006 12:50:00
- Zuletzt bearbeitet 16.06.2026 22:24:08
Multiple cross-site scripting (XSS) vulnerabilities in phpLDAPadmin 0.9.8 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) dn parameter in (a) compare_form.php, (b) copy_form.php, (c) rename_form.php, (d) template...
CVE-2006-1753
- EPSS 0.35%
- Veröffentlicht 18.04.2006 20:02:00
- Zuletzt bearbeitet 16.06.2026 22:23:37
A cron job in fcheck before 2.7.59 allows local users to overwrite arbitrary files via a symlink attack on a temporary file.
CVE-2006-1530
- EPSS 4.77%
- Veröffentlicht 14.04.2006 10:02:00
- Zuletzt bearbeitet 16.06.2026 22:23:08
Unspecified vulnerability in Firefox and Thunderbird before 1.5.0.2, and SeaMonkey before 1.0.1, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown attack vectors related to DHTML. NOTE: due ...
CVE-2006-1531
- EPSS 4.77%
- Veröffentlicht 14.04.2006 10:02:00
- Zuletzt bearbeitet 16.06.2026 22:23:08
Unspecified vulnerability in Firefox and Thunderbird before 1.5.0.2, and SeaMonkey before 1.0.1, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown attack vectors related to DHTML. NOTE: due ...
CVE-2006-1724
- EPSS 6.89%
- Veröffentlicht 14.04.2006 10:02:00
- Zuletzt bearbeitet 16.06.2026 22:23:30
Unspecified vulnerability in Firefox and Thunderbird before 1.5.0.2, 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via atta...
CVE-2006-1772
- EPSS 0.38%
- Veröffentlicht 13.04.2006 10:02:00
- Zuletzt bearbeitet 16.06.2026 22:23:39
debconf in Debian GNU/Linux, when configuring mnogosearch in the mnogosearch-common 3.2.31-1 package, uses the world-readable config.dat file instead of the restricted passwords.dat for storing the cleartext database administrator password in the mno...
CVE-2006-1564
- EPSS 0.48%
- Veröffentlicht 31.03.2006 11:06:00
- Zuletzt bearbeitet 16.06.2026 22:23:12
Untrusted search path vulnerability in libapache2-svn 1.3.0-4 for Subversion in Debian GNU/Linux includes RPATH values under the /tmp/svn directory for the (1) mod_authz_svn.so and (2) mod_dav_svn.so modules, which might allow local users to gain pri...
CVE-2006-1565
- EPSS 0.48%
- Veröffentlicht 31.03.2006 11:06:00
- Zuletzt bearbeitet 16.06.2026 22:23:12
Untrusted search path vulnerability in libgpib-perl 3.2.06-2 in Debian GNU/Linux includes an RPATH value under the /tmp/buildd directory for the LinuxGpib.so module, which might allow local users to gain privileges by installing malicious libraries i...
CVE-2006-1566
- EPSS 0.49%
- Veröffentlicht 31.03.2006 11:06:00
- Zuletzt bearbeitet 16.06.2026 22:23:12
Untrusted search path vulnerability in libtunepimp-perl 0.4.2-1 in Debian GNU/Linux includes an RPATH value under the /tmp/buildd directory for the tunepimp.so module, which might allow local users to gain privileges by installing malicious libraries...
CVE-2006-1376
- EPSS 0.39%
- Veröffentlicht 24.03.2006 02:02:00
- Zuletzt bearbeitet 16.06.2026 22:22:33
The installation of Debian GNU/Linux 3.1r1 from the network install CD creates /var/log/debian-installer/cdebconf with world writable permissions, which allows local users to cause a denial of service (disk consumption).