NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 58576 | CVE-2007-6581 | Multiple directory traversal vulnerabilities in Social Engine 2.0 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the global_lang parameter to (1) header_album.php, (2) header_blog.php, or (3) header_group.php; or (4) admin_header_album.php, (5) admin_header_blog.php, or (6) admin_header_group.php in admin/. | 2 | 6.4 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 59088 | CVE-2006-0349 | SQL injection vulnerability in eggblog 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to blog.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
| 59344 | CVE-2006-0613 | Unspecified vulnerability in Java Web Start after 1.0.1_02, as used in J2SE 5.0 Update 5 and earlier, allows remote attackers to obtain privileges via unspecified vectors involving untrusted applications. | 2 | 4 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 59600 | CVE-2006-0871 | Directory traversal vulnerability in the _setTemplate function in Mambo 4.5.3, 4.5.3h, and possibly earlier versions allows remote attackers to read and include arbitrary files via the mos_change_template parameter. NOTE: CVE-2006-1794 has been assigned to the SQL injection vector. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 59856 | CVE-2006-1134 | SQL injection vulnerability in CyBoards PHP Lite 1.25, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the parent parameter to (1) post.php and possibly (2) process_post.php. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 14468 of 17672, showing 5 records out of 88360 total, starting on record 72336, ending on 72340