NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63002 | CVE-2006-4363 | PHP remote file inclusion vulnerability in admin.cropcanvas.php in the CropImage component (com_cropimage) 1.0 for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the cropimagedir parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63514 | CVE-2006-4898 | PHP remote file inclusion vulnerability in include/phpxd/phpXD.php in guanxiCRM 0.9.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the appconf[rootpath] parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
64282 | CVE-2006-5707 | SQL injection vulnerability in index.php in PHPEasyData Pro 1.4.1 and 2.2.1 allows remote attackers to execute arbitrary SQL commands via the cat parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
64794 | CVE-2006-6233 | SQL injection vulnerability in the Downloads module for unknown versions of PostNuke allows remote attackers to execute arbitrary SQL commands via the lid parameter in a viewdownloaddetails operation. NOTE: this issue might have been in the viewdownloaddetails function in dl-downloaddetails.php, but PostNuke 0.764 does not appear to have this issue. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
65563 | CVE-2006-7020 | CRLF injection vulnerability in (1) include/inc_act/act_formmailer.php and possibly (2) sample_ext_php/mail_file_form.php in phpwcms 1.2.5-DEV and earlier, and 1.1 before RC4, allows remote attackers to modify HTTP headers and send spam e-mail via a spoofed HTTP Referer (HTTP_REFERER). | 2 | 7.8 | High | 2016-12-20 | 2011-03-07 | View |
Page 1075 of 17672, showing 5 records out of 88360 total, starting on record 5371, ending on 5375