NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64671  CVE-2006-6110  Multiple SQL injection vulnerabilities in an unspecified BPG-InfoTech Content Management System product allow remote attackers to execute arbitrary SQL commands via the (1) vjob parameter in publications_list.asp or (2) InfoID parameter in publication_view.asp.    7.5  High  2016-12-20  2008-09-05  View
64927  CVE-2006-6381  Directory traversal vulnerability in getfile.asp in Ultimate HelpDesk allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.    7.5  High  2016-12-20  2011-03-07  View
65952  CVE-2005-0188  Format string vulnerability in the SetBaseURL function in AtHoc toolbar allows remote attackers to execute arbitrary code via format string specifiers in an invalid URL that is recorded in the debug log.    7.5  High  2017-07-18  2017-07-10  View
1440  CVE-2008-1493  Directory traversal vulnerability in login.php in Cuteflow Bin 1.5.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the language parameter.    7.5  High  2017-01-03  2008-09-05  View
1952  CVE-2008-2016  PHP remote file inclusion vulnerability in Chilek Content Management System (aka ChiCoMaS) 2.0.4 allows remote attackers to execute arbitrary PHP code via a URL in the lang parameter to the default URI under install/. NOTE: this can also be leveraged to include and execute arbitrary local files via directory traversal sequences.    7.5  High  2017-01-03  2009-01-29  View

Page 14614 of 17672, showing 5 records out of 88360 total, starting on record 73066, ending on 73070

Actions