NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60898 | CVE-2006-2194 | The winbind plugin in pppd for ppp 2.4.4 and earlier does not check the return code from the setuid function call, which might allow local users to gain privileges by causing setuid to fail, such as exceeding PAM limits for the maximum number of user processes, which prevents the winbind NTLM authentication helper from dropping privileges. | 2 | 7.2 | High | 2016-12-20 | 2010-04-02 | View | |
61154 | CVE-2006-2459 | SQL injection vulnerability in messages.php in PHP-Fusion 6.00.307 and earlier allows remote authenticated users to execute arbitrary SQL commands via the srch_where parameter. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
61410 | CVE-2006-2725 | SQL injection vulnerability in rss/posts.php in Eggblog before 3.07 allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
61666 | CVE-2006-2982 | Multiple PHP remote file inclusion vulnerabilities in Enterprise Timesheet and Payroll Systems (EPS) 1.1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the absolutepath parameter in (1) footer.php and (2) admin/footer.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
61922 | CVE-2006-3243 | SQL injection vulnerability in usercp.php in MyBB (MyBulletinBoard) 1.0 through 1.1.3 allows remote attackers to execute arbitrary SQL commands via the showcodebuttons parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 15698 of 17672, showing 5 records out of 88360 total, starting on record 78486, ending on 78490