NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
60072  CVE-2006-1363  images.php in Justin White (aka YTZ) Free Web Publishing System (FreeWPS) 2.11 allows remote attackers to execute arbitrary PHP code by uploading a .php file into the /upload directory as specified in the dirPath parameter, then performing a direct request to that file.    7.5  High  2016-12-20  2011-03-07  View
60840  CVE-2006-2135  SQL injection vulnerability in login.php in Ruperts News allows remote attackers to execute arbitrary SQL commands via the username parameter.    7.5  High  2016-12-20  2011-03-07  View
61352  CVE-2006-2667  Direct static code injection vulnerability in WordPress 2.0.2 and earlier allows remote attackers to execute arbitrary commands by inserting a carriage return and PHP code when updating a profile, which is appended after a special comment sequence into files in (1) wp-content/cache/userlogins/ (2) wp-content/cache/users/ which are later included by cache.php, as demonstrated using the displayname argument.    7.5  High  2016-12-20  2011-03-07  View
61864  CVE-2006-3185  PHP remote file inclusion vulnerability in data/header.php in CMS Faethon 1.3.2 allows remote attackers to execute arbitrary PHP code via a URL in the mainpath parameter.    7.5  High  2016-12-20  2011-03-07  View
62120  CVE-2006-3444  Unspecified vulnerability in the kernel in Microsoft Windows 2000 SP4, probably a buffer overflow, allows local users to obtain privileges via unspecified vectors involving an "unchecked buffer."    7.5  High  2016-12-20  2011-03-07  View

Page 14714 of 17672, showing 5 records out of 88360 total, starting on record 73566, ending on 73570

Actions