NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59448  CVE-2006-0717  IBM Tivoli Directory Server 6.0 allows remote attackers to cause a denial of service (crash) via a crafted LDAP request, as demonstrated by test 2532 in the ProtoVer Sample LDAP test suite.    Medium  2016-12-20  2011-03-07  View
59447  CVE-2006-0716  SQL injection vulnerability in index.php in sNews 1.3 allows remote attackers to execute arbitrary SQL commands via the (1) category and (2) id parameters.    7.5  High  2016-12-20  2008-09-05  View
59446  CVE-2006-0715  Cross-site scripting (XSS) vulnerability in sNews 1.3 allows remote attackers to inject arbitrary web script or HTML via the comment field.    4.3  Medium  2016-12-20  2008-09-05  View
59445  CVE-2006-0714  Directory traversal vulnerability in the installation file (sql/install-0.9.7.php) in Flyspray 0.9.7 allows remote attackers to include arbitrary files via a .. (dot dot) sequence in the adodbpath parameter.    Medium  2016-12-20  2011-03-07  View
59444  CVE-2006-0713  Directory traversal vulnerability in LinPHA 1.0 allows remote attackers to include arbitrary files via .. (dot dot) sequences in the (1) lang parameter in docs/index.php and the language parameter in (2) install/install.php, (3) install/sec_stage_install.php, (4) install/third_stage_install.php, and (5) install/forth_stage_install.php. NOTE: direct static code injection is resultant from this issue, as demonstrated by inserting PHP code into the username, which is inserted into linpha.log, which is accessible from the directory traversal.    Medium  2016-12-20  2011-03-07  View

Page 14413 of 17672, showing 5 records out of 88360 total, starting on record 72061, ending on 72065

Actions