Author: stef-guest Date: 2006-08-12 08:01:11 +0000 (Sat, 12 Aug 2006) New Revision: 4556 Modified: data/CVE/list Log: - CVE-2006-3469: mysql issue already fixed - some NFUs Modified: data/CVE/list ==================================================================--- data/CVE/list 2006-08-12 07:42:19 UTC (rev 4555) +++ data/CVE/list 2006-08-12 08:01:11 UTC (rev 4556) @@ -3,57 +3,57 @@ CVE-2006-XXXX [unspecified vulnerability in ruby on rails] - rails 1.1.6-1 (bug #382255; medium) CVE-2006-4071 (Sign extension vulnerability in the createBrushIndirect function in ...) - TODO: check + NOT-FOR-US: Microsoft CVE-2006-4070 (Format string vulnerability in Imendio Planner 0.13 allows ...) - TODO: check + NOT-FOR-US: Imendio Planner CVE-2006-4069 (Multiple cross-site scripting (XSS) vulnerabilities in Elaine Aquino ...) - TODO: check + NOT-FOR-US: Online Zone Journals (OZJournals) CVE-2006-4068 (The pswd.js script relies on the client to calculate whether a ...) - TODO: check + NOT-FOR-US: pswd.js CVE-2006-4067 (Cross-site scripting (XSS) vulnerability in cake/libs/error.php in ...) - TODO: check + NOT-FOR-US: CakePHP CVE-2006-4066 (The Graphical Device Interface Plus library (gdiplus.dll) in Microsoft ...) - TODO: check + NOT-FOR-US: Microsoft CVE-2006-4065 (Multiple PHP remote file inclusion vulnerabilities in Dmitry Sheiko ...) - TODO: check + NOT-FOR-US: SAPID Gallery CVE-2006-4064 (SQL injection vulnerability in default.asp in YenerTurk Haber Script ...) - TODO: check + NOT-FOR-US: YenerTurk Haber Script CVE-2006-4063 (Multiple PHP remote file inclusion vulnerabilities in Csaba Godor ...) - TODO: check + NOT-FOR-US: SAPID Blog CVE-2006-4062 (PHP remote file inclusion vulnerability in ...) - TODO: check + NOT-FOR-US: SAPID Shop CVE-2006-4061 (PHP remote file inclusion vulnerability in index.php in Thomas Pequet ...) - TODO: check + NOT-FOR-US: phpPrintAnalyzer CVE-2006-4060 (PHP remote file inclusion vulnerability in calendar.php in Visual ...) - TODO: check + NOT-FOR-US: Visual Events Calendar CVE-2006-4059 (Multiple PHP remote file inclusion vulnerabilities in USOLVED ...) - TODO: check + NOT-FOR-US: USOLVED NEWSolved Lite CVE-2006-4058 (Cross-site scripting (XSS) vulnerability in archive.php in Simplog ...) - TODO: check + NOT-FOR-US: Simplog CVE-2006-4057 (Buffer overflow in the preview_create function in gui.cpp in Mitch ...) - TODO: check + NOT-FOR-US: Eremove CVE-2006-4056 (Multiple SQL injection vulnerabilities in the authentication process ...) - TODO: check + NOT-FOR-US: katzlbt The Address Book CVE-2006-4055 (Multiple PHP remote file inclusion vulnerabilities in Olaf Noehring ...) - TODO: check + NOT-FOR-US: The Search Engine Project (TSEP) CVE-2006-4054 (Multiple PHP remote file inclusion vulnerabilities in ME Download ...) - TODO: check + NOT-FOR-US: ME Download System CVE-2006-4053 (PHP remote file inclusion vulnerability in templates/header.php in ME ...) - TODO: check + NOT-FOR-US: ME Download System CVE-2006-4052 (Multiple PHP remote file inclusion vulnerabilities in Turnkey Web ...) - TODO: check + NOT-FOR-US: Turnkey Web Tools PHP Simple Shop CVE-2006-4051 (PHP remote file inclusion vulnerability in global.php in Turnkey Web ...) - TODO: check + NOT-FOR-US: Turnkey Web Tools PHP Live Helper CVE-2006-4050 (PHP remote file inclusion vulnerability in auto_check_renewals.php in ...) - TODO: check + NOT-FOR-US: phpAutoMembersArea (phpAMA) CVE-2006-4049 (Unspecified vulnerability in the utxconfig utility in Sun Ray Server ...) - TODO: check + NOT-FOR-US: Sun CVE-2006-4048 (Netious CMS 0.4 initializes session IDs based on the client IP ...) - TODO: check + NOT-FOR-US: Netious CMS CVE-2006-4047 (SQL injection vulnerability in index.php in Netious CMS 0.4 and ...) - TODO: check + NOT-FOR-US: Netious CMS CVE-2006-4045 (PHP remote file inclusion vulnerability in news.php in Torbstoff News ...) - TODO: check + NOT-FOR-US: Torbstoff News CVE-2006-4044 (PHP remote file inclusion vulnerability in Beautifier/Core.php in Brad ...) NOT-FOR-US: phpCodeCabinet CVE-2006-4043 (index.php in myWebland myBloggie 2.1.4 and earlier allows remote ...) @@ -193,7 +193,7 @@ CVE-2006-3980 (PHP remote file inclusion vulnerability in ...) NOT-FOR-US: Mambo Gallery Manager for Mambo CVE-2006-3979 (The AdminAPI of ColdFusion MX 7 allows attackers to bypass ...) - TODO: check + NOT-FOR-US: ColdFusion MX CVE-2006-3978 RESERVED CVE-2006-3977 (Unspecified vulnerability in CA eTrust Antivirus WebScan before ...) @@ -1358,7 +1358,7 @@ NOT-FOR-US: Dell Openmanage CD CVE-2006-3469 (Format string vulnerability in time.cc in MySQL Server 4.1 before ...) {DSA-1112} - TODO: check + - mysql-dfsg-5.0 5.0.22-1 CVE-2006-3468 (Linux kernel 2.6.x, when using both NFS and EXT3, allows remote ...) - linux-2.6 <unfixed> - linux-2.6.16 <unfixed>