NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 62166 | CVE-2006-3492 | The CORBA::ORBInvokeRec::set_answer_invoke function in orb.cc in MICO (Mico Is CORBA) 2.3.12 and earlier allows remote attackers to cause a denial of service (application crash) via a message with an incorrect "object key", which triggers an assert error. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 62422 | CVE-2006-3754 | PHP remote file inclusion vulnerability in Include/editor/rich_files/class.rich.php in FlushCMS 1.0.0-pre2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the class_path parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 62678 | CVE-2006-4020 | scanf.c in PHP 5.1.4 and earlier, and 4.4.3 and earlier, allows context-dependent attackers to execute arbitrary code via a sscanf PHP function call that performs argument swapping, which increments an index past the end of an array and triggers a buffer over-read. | 2 | 4.6 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 62934 | CVE-2006-4295 | Cross-site scripting (XSS) vulnerability in ascan_6.asp in Panda ActiveScan 5.53.00 allows remote attackers to inject arbitrary web script or HTML via the email parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 63190 | CVE-2006-4557 | ** DISPUTED ** PHP remote file inclusion vulnerability in plugins/plugins.php in Bob Jewell Discloser 0.0.4 allows remote attackers to execute arbitrary PHP code via a URL in the type parameter. NOTE: another researcher has stated that an attacker cannot control the type parameter. As of 20060901, CVE analysis concurs with the dispute. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 15184 of 17672, showing 5 records out of 88360 total, starting on record 75916, ending on 75920