NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63943  CVE-2006-5342  Unspecified vulnerability in Oracle Spatial component in Oracle Database 9.0.1.5, 9.2.0.6, and 10.1.0.3 has unknown impact and remote authenticated attack vectors related to mdsys.sdo_tune, aka Vuln# DB18. NOTE: as of 20061023, Oracle has not disputed reports from reliable third parties that DB18 might be related to SQL injection in the EXTENT_OF function.    7.1  High  2016-12-20  2012-10-22  View
64199  CVE-2006-5604  Directory traversal vulnerability in phpcards.header.php in phpCards 1.3 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the CardLanguageFile parameter.    7.5  High  2016-12-20  2008-09-05  View
64455  CVE-2006-5880  SQL injection vulnerability on the subMenu page in switch.asp in Munch Pro 1.0 allows remote attackers to execute arbitrary SQL commands via the catid parameter.    7.5  High  2016-12-20  2011-03-07  View
64711  CVE-2006-6150  PHP remote file inclusion vulnerability in memory/OWLMemoryProperty.php in OWLLib 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the OWLLIB_ROOT parameter.    7.5  High  2016-12-20  2011-03-07  View
65223  CVE-2006-6679  Pedro Lineu Orso chetcpasswd before 2.4 relies on the X-Forwarded-For HTTP header when verifying a client"s status on an IP address ACL, which allows remote attackers to gain unauthorized access by spoofing this header.    7.5  High  2016-12-20  2016-11-18  View

Page 15783 of 17672, showing 5 records out of 88360 total, starting on record 78911, ending on 78915

Actions