NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60371 | CVE-2006-1666 | SQL injection vulnerability in forum.php in Arab Portal 2.0.1 stable allows remote attackers to execute arbitrary SQL commands via the mineID parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
60627 | CVE-2006-1922 | PHP remote file inclusion vulnerability in (1) about.php or (2) auth.php in TotalCalendar allows remote attackers to execute arbitrary PHP code via a URL in the inc_dir parameter. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
60883 | CVE-2006-2178 | Multiple cross-site scripting (XSS) vulnerabilities in CyberBuild allow remote attackers to inject arbitrary web script or HTML via the (1) SessionID parameter to login.asp, (2) ProductIndex parameter to browse0.htm, (3) rowcolor parameter to result.asp, or (4) heading parameter to result.asp. NOTE: vectors 1 and 2 might be resultant from SQL injection. | 2 | 5.8 | Medium | 2016-12-20 | 2011-09-20 | View | |
61139 | CVE-2006-2440 | Heap-based buffer overflow in the libMagick componet of ImageMagick 6.0.6.2 might allow attackers to execute arbitrary code via an image index array that triggers the overflow during filename glob expansion by the ExpandFilenames function. | 2 | 7.5 | High | 2016-12-20 | 2010-08-21 | View | |
61395 | CVE-2006-2710 | Secure Elements Class 5 AVR (aka C5 EVM) before 2.8.1 uses the same invariant RSA key for all installations, which allows remote attackers with the key to decrypt communications. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 1240 of 17672, showing 5 records out of 88360 total, starting on record 6196, ending on 6200