Preben Nylokken

3 exploits Active since Nov 2005
CVE-2005-3432 EXPLOITDB text WRITEUP
MiniGal 2 (MG2) <0.5.1 - Info Disclosure
MiniGal 2 (MG2) 0.5.1 allows remote attackers to list password protected images via a request to index.php with the list parameter set to * (wildcard) and the page parameter set to all.
CVE-2006-0946 EXPLOITDB text WRITEUP
Thomson Speedtouch - XSS
Cross-site scripting (XSS) vulnerability in Thomson SpeedTouch modems running firmware 5.3.2.6.0 allows remote attackers to inject arbitrary web script or HTML via the name parameter to the LocalNetwork page.
CVE-2006-0947 EXPLOITDB text WRITEUP
Thomson SpeedTouch <5.3.2.6.0 - Privilege Escalation
Thomson SpeedTouch modem running firmware 5.3.2.6.0 allows remote attackers to create users that cannot be deleted via scripting code in the "31" parameter in a NewUser function, which is not filtered by the modem when creating the account, but cannot be deleted by the administrator, possibly due to cleansing that occurs in the administrator interface.