NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
58903  CVE-2006-0163  SQL injection vulnerability in the search module (modules/Search/index.php) of PHPNuke EV 7.7 -R1 allows remote attackers to execute arbitrary SQL commands via the query parameter, which is used by the search field. NOTE: This is a different vulnerability than CVE-2005-3792.    7.5  High  2016-12-20  2011-03-07  View
59159  CVE-2006-0421  By design, BEA WebLogic Server and WebLogic Express 7.0 and 6.1, when creating multiple domains from the same WebLogic instance on the same machine, allows administrators of any created domain to access other created domains, which could allow administrators to gain privileges that were not intended.    4.6  Medium  2016-12-20  2011-03-07  View
59415  CVE-2006-0684  change_password.php in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier does not verify the old password when a user changes the password, which may allow remote attackers to gain unauthorized access.    7.5  High  2016-12-20  2011-03-07  View
59671  CVE-2006-0944  Archangel Weblog 0.90.02 allows remote attackers to bypass authentication by setting the ba_admin cookie to 1.    7.5  High  2016-12-20  2016-11-18  View
59927  CVE-2006-1213  JiRo"s Banner System Experience and Professional 1.0 and earlier allows remote attackers to bypass access restrictions and gain privileges via a direct request to certain scripts in the files directory, as demonstrated by using addadmin.asp to create a new administrator account.    7.5  High  2016-12-20  2011-03-07  View

Page 129 of 17672, showing 5 records out of 88360 total, starting on record 641, ending on 645

Actions