NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62727 | CVE-2006-4070 | Format string vulnerability in Imendio Planner 0.13 allows user-assisted attackers to execute arbitrary code via format string specifiers in a filename. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
63751 | CVE-2006-5145 | Multiple SQL injection vulnerabilities in OlateDownload 3.4.0 allow remote attackers to execute arbitrary SQL commands via the (1) page parameter in details.php or the (2) query parameter in search.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
65031 | CVE-2006-6486 | SQL injection vulnerability in EasyPage allows remote attackers to execute arbitrary SQL commands via unspecified vectors in sptrees/default.aspx, possibly involving the docId parameter. NOTE: this issue appears to have been disputed by a third party researcher, stating that SQL injection is not possible. However, insufficient details were provided to evaluate the dispute. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
65544 | CVE-2006-7001 | Directory traversal vulnerability in avatar.php in PhpMyChat Plus 1.9 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the L parameter, a different issue than CVE-2006-5897. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.1 | High | 2016-12-20 | 2008-09-05 | View | |
264 | CVE-2008-0279 | SQL injection vulnerability in liretopic.php in Xforum 1.4 and possibly others allows remote attackers to execute arbitrary SQL commands via the topic parameter. NOTE: the categorie parameter might also be affected. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 16055 of 17672, showing 5 records out of 88360 total, starting on record 80271, ending on 80275