Author: alec-guest Date: 2006-07-21 02:06:32 +0000 (Fri, 21 Jul 2006) New Revision: 4437 Modified: data/CVE/list Log: NOT-FOR-US Modified: data/CVE/list ==================================================================--- data/CVE/list 2006-07-20 22:35:16 UTC (rev 4436) +++ data/CVE/list 2006-07-21 02:06:32 UTC (rev 4437) @@ -252,33 +252,34 @@ CVE-2006-3612 (Cross-site scripting (XSS) vulnerability in Phorum 5.1.14 allows ...) NOT-FOR-US: Phorum CVE-2006-3611 (Directory traversal vulnerability in pm.php in Phorum 5 allows remote ...) - TODO: check + NOT-FOR-US: Phorum CVE-2006-3610 (index.php in Orbitcoders OrbitMATRIX 1.0 allows remote attackers to ...) - TODO: check + NOT-FOR-US: Orbitcoders OrbitMATRIX CVE-2006-3609 (Cross-site scripting (XSS) vulnerability in index.php in Orbitcoders ...) - TODO: check + NOT-FOR-US: Orbitcoders OrbitMATRIX CVE-2006-3608 (The Gallery module in Simone Vellei Flatnuke 2.5.7 and earlier, when ...) - TODO: check + NOT-FOR-US: Simone Vellei Flatnuke CVE-2006-3607 (Multiple cross-site scripting (XSS) vulnerabilities in Softbiz Banner ...) - TODO: check + NOT-FOR-US: Softbiz Banner Exchange Script (aka Banner Exchange Network Script) CVE-2006-3606 (Unspecified vulnerability in Sun Solaris X Inter Client Exchange ...) + NOTE: Debian has a libice - is it the same one? TODO: check CVE-2006-3605 (Microsoft Internet Explorer 6 allows remote attackers to cause a ...) NOT-FOR-US: Microsoft Internet Explorer CVE-2006-3604 (Directory traversal vulnerability in FlexWATCH Network Camera 3.0 and ...) - TODO: check + NOT-FOR-US: FlexWATCH Network Camera CVE-2006-3603 (Cross-site scripting (XSS) vulnerability in index.php in FlexWATCH ...) - TODO: check + NOT-FOR-US: FlexWATCH Network Camera CVE-2006-3602 (Directory traversal vulnerability in ...) - TODO: check + NOT-FOR-US: FarsiNews CVE-2006-3601 (** UNVERIFIABLE ** ...) - TODO: check + NOT-FOR-US: DotNetNuke CVE-2006-3600 (Multiple stack-based buffer overflows in the LookupTRM::lookup ...) - libtunepimp <unfixed> (bug #378091; medium) CVE-2006-3599 (SQL injection vulnerability in the Nuke Advanced Classifieds module ...) - TODO: check + NOT-FOR-US: Nuke Advanced Classifieds module for PHP-Nuke CVE-2006-3598 (SQL injection vulnerability in the Sections module for PHP-Nuke allows ...) - TODO: check + NOT-FOR-US: Sections module for PHP-Nuke CVE-2006-3597 (passwd before 1:4.0.13 on Ubuntu 6.06 LTS leaves the root password ...) TODO: check CVE-2006-3596 (The device driver for Intel-based gigabit network adapters in Cisco ...) @@ -302,7 +303,7 @@ CVE-2006-3590 (Unspecified vulnerability in mso.dll, as used by Microsoft PowerPoint ...) NOT-FOR-US: Microsoft PowerPoint CVE-2006-3589 (vmware-config.pl in VMware for Linux, ESX Server 2.x, and Infrastructure ...) - TODO: check + NOT-FOR-US: VMware CVE-2006-3588 (Unspecified vulnerability in Macromedia Flash Player 8.0.24.0 allows ...) NOT-FOR-US: Macromedia Flash Player 8 CVE-2006-3587 (Unspecified vulnerability in Macromedia Flash Player 8.0.24.0 allows ...) @@ -526,13 +527,13 @@ CVE-2006-3478 (PHP remote file inclusion vulnerability in ...) NOT-FOR-US: MyPHP CMS CVE-2006-3477 (Unspecified vulnerability in the POP service in Stalker CommuniGate ...) - TODO: check + NOT-FOR-US: Stalker CommuniGate Pro CVE-2006-3476 (Cross-site scripting (XSS) vulnerability in comments.php in ...) - TODO: check + NOT-FOR-US: PhpWebGallery CVE-2006-3475 (Multiple PHP remote file inclusion vulnerabilities in free QBoard 1.1 ...) - TODO: check + NOT-FOR-US: QBoard CVE-2006-3474 (Multiple SQL injection vulnerabilities in Belchior Foundry vCard PRO ...) - TODO: check + NOT-FOR-US: Belchior Foundry vCard PRO CVE-2006-3473 (CRLF injection vulnerability in form_mail Drupal Module before 1.8.2.2 ...) TODO: check CVE-2006-3472 (Microsoft Internet Explorer 6.0 and 6.0 SP1 allows remote attackers to ...)