NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63943 | CVE-2006-5342 | Unspecified vulnerability in Oracle Spatial component in Oracle Database 9.0.1.5, 9.2.0.6, and 10.1.0.3 has unknown impact and remote authenticated attack vectors related to mdsys.sdo_tune, aka Vuln# DB18. NOTE: as of 20061023, Oracle has not disputed reports from reliable third parties that DB18 might be related to SQL injection in the EXTENT_OF function. | 2 | 7.1 | High | 2016-12-20 | 2012-10-22 | View | |
64199 | CVE-2006-5604 | Directory traversal vulnerability in phpcards.header.php in phpCards 1.3 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the CardLanguageFile parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
64455 | CVE-2006-5880 | SQL injection vulnerability on the subMenu page in switch.asp in Munch Pro 1.0 allows remote attackers to execute arbitrary SQL commands via the catid parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
64711 | CVE-2006-6150 | PHP remote file inclusion vulnerability in memory/OWLMemoryProperty.php in OWLLib 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the OWLLIB_ROOT parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65223 | CVE-2006-6679 | Pedro Lineu Orso chetcpasswd before 2.4 relies on the X-Forwarded-For HTTP header when verifying a client"s status on an IP address ACL, which allows remote attackers to gain unauthorized access by spoofing this header. | 2 | 7.5 | High | 2016-12-20 | 2016-11-18 | View |
Page 15783 of 17672, showing 5 records out of 88360 total, starting on record 78911, ending on 78915