NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61979 | CVE-2006-3300 | PHP remote file inclusion vulnerability in sms_config/gateway.php in PhpMySms 2.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the ROOT_PATH parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62235 | CVE-2006-3561 | BT Voyager 2091 Wireless firmware 2.21.05.08m_A2pB018c1.d16d and earlier, and 3.01m and earlier, allow remote attackers to bypass the authentication process and gain sensitive information, such as configuration information via (1) /btvoyager_getconfig.sh, PPP crendentials via (2) btvoyager_getpppcreds.sh, and decode configuration credentials via (3) btvoyager_decoder.c. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
62491 | CVE-2006-3823 | SQL injection vulnerability in index.php in GeodesicSolutions (1) GeoAuctions Premier 2.0.3 and (2) GeoClassifieds Basic 2.0.3 allows remote attackers to execute arbitrary SQL commands via the b parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2015-09-01 | View | |
62747 | CVE-2006-4090 | Cross-site scripting (XSS) vulnerability in Webligo BlogHoster 2.2 allows remote attackers to inject arbitrary web script or HTML via the "From: part of the comment post," probably involving the nickname parameter to previewcomment.php. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
63003 | CVE-2006-4364 | Multiple heap-based buffer overflows in the POP3 server in Alt-N Technologies MDaemon before 9.0.6 allow remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via long strings that contain "@" characters in the (1) USER and (2) APOP commands. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 154 of 17672, showing 5 records out of 88360 total, starting on record 766, ending on 770