CVE-2006-2899 – ESTsoft InternetDisk - Arbitrary File Upload / Script Execution
https://notcve.org/view.php?id=CVE-2006-2899
Unspecified vulnerability in ESTsoft InternetDISK versions before 2006/04/20 allows remote authenticated users to execute arbitrary code, possibly by uploading a file with multiple extensions into the WebLink directory. • https://www.exploit-db.com/exploits/27972 http://securityreason.com/securityalert/1063 http://securitytracker.com/id?1016233 http://www.securityfocus.com/archive/1/436001/100/0/threaded http://www.securityfocus.com/bid/18279 https://exchange.xforce.ibmcloud.com/vulnerabilities/26948 •
CVE-2005-3194
https://notcve.org/view.php?id=CVE-2005-3194
Multiple buffer overflows in ALZip 6.12 (Korean), 6.1 (International), and 5.52 (English) allow remote attackers to execute arbitrary code via a long filename in a compressed (1) ALZ, (2) ARJ, (3) ZIP, (4) UUE, or (5) XXE archive. • http://secunia.com/advisories/16847 http://secunia.com/secunia_research/2005-49/advisory http://securitytracker.com/id?1015003 http://www.osvdb.org/19889 http://www.osvdb.org/19890 http://www.securityfocus.com/bid/15010 https://exchange.xforce.ibmcloud.com/vulnerabilities/22526 •