NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 60614 | CVE-2006-1909 | Directory traversal vulnerability in index.php in Coppermine 1.4.4 allows remote attackers to read arbitrary files via a .//./ (modified dot dot slash) in the file parameter, which causes a regular expression to collapse the sequences into standard "../" sequences. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 61382 | CVE-2006-2697 | Multiple SQL injection vulnerabilities in Easy-Content Forums 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) startletter parameter in userview.asp and the (2) forumname parameter in topics.asp. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 62150 | CVE-2006-3476 | Cross-site scripting (XSS) vulnerability in comments.php in PhpWebGallery 1.5.2 and earlier, and possibly 1.6.0, allows remote attackers to inject arbitrary web script or HTML via the keyword parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 62662 | CVE-2006-4004 | Directory traversal vulnerability in index.php in vbPortal 3.0.2 through 3.6.0 Beta 1, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the bbvbplang cookie, as demonstrated by injecting PHP sequences into an Apache HTTP Server log file, which is then included by index.php. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 63174 | CVE-2006-4541 | RapDrv.sys in BlackICE PC Protection 3.6.cpn, cpj, cpiE, and possibly 3.6 and earlier, allows local users to cause a denial of service (crash) via a NULL third argument to the NtOpenSection API function. NOTE: it was later reported that 3.6.cqn is also affected. | 2 | 4.6 | Medium | 2016-12-20 | 2011-08-10 | View |
Page 15645 of 17672, showing 5 records out of 88360 total, starting on record 78221, ending on 78225