NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60129 | CVE-2006-1420 | SQL injection vulnerability in print.php in SaphpLesson 2.0 allows remote attackers to execute arbitrary SQL commands via the lessid parameter. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
61409 | CVE-2006-2724 | Cross-site scripting (XSS) vulnerability in PunBB 1.2.11 allows remote authenticated administrators to inject arbitrary HTML or web script to other administrators via the "Admin note" feature, a different vulnerability than CVE-2006-2227. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
61665 | CVE-2006-2981 | SQL injection vulnerability in vs_search.php in Arantius Vice Stats before 1.0.1 allows remote attackers to execute arbitrary SQL commands via unknown vectors, a different issue than CVE-2006-2972. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63713 | CVE-2006-5107 | Multiple SQL injection vulnerabilities in Devellion CubeCart 2.0.x allow remote attackers to execute arbitrary SQL commands via (1) the user_name parameter in admin/forgot_pass.php, (2) the order_id parameter in view_order.php, (3) the view_doc parameter in view_doc.php, and (4) the order_id parameter in admin/print_order.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
64481 | CVE-2006-5906 | ** DISPUTED ** PHP remote file inclusion vulnerability in modules/bannieres/bannieres.php in Jean-Christophe Ramos SCRIPT BANNIERES (aka ban 0.1 and PLS-Bannieres 1.21) allows remote attackers to execute arbitrary PHP code via a URL in the chemin parameter. NOTE: the issue is disputed by other researchers, who observe that $chemin is defined before use. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 1487 of 17672, showing 5 records out of 88360 total, starting on record 7431, ending on 7435