NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63692  CVE-2006-5086  Blog Pixel Motion 2.1.1 allows remote attackers to change the username and password for the admin user via a direct request to insere_base.php with modified (1) login and (2) pass parameters. NOTE: this issue was claimed to be SQL injection by the original researcher, but it is not.    6.4  Medium  2016-12-20  2008-09-05  View
63948  CVE-2006-5347  Unspecified vulnerability in Oracle HTTP Server 9.2.0.7 and Oracle Collaboration Suite 9.0.4.2 has unknown impact and remote attack vectors related to HTTPS and SSL, aka Vuln# OHS04.    10  High  2016-12-20  2012-10-22  View
64204  CVE-2006-5609  Directory traversal vulnerability in dir.php in TorrentFlux 2.1 allows remote attackers to list arbitrary directories via "../" sequences in the dir parameter.    Medium  2016-12-20  2008-09-05  View
64460  CVE-2006-5885  SQL injection vulnerability in Products.asp in NuStore 1.0 allows remote attackers to execute arbitrary SQL commands via the SubCatagoryID parameter.    7.5  High  2016-12-20  2011-03-07  View
64716  CVE-2006-6155  Multiple SQL injection vulnerabilities in addrating.php in HIOX Star Rating System Script (HSRS) 1.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) ipadd or (2) url parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.    7.5  High  2016-12-20  2011-03-07  View

Page 1200 of 17672, showing 5 records out of 88360 total, starting on record 5996, ending on 6000

Actions