NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
62727  CVE-2006-4070  Format string vulnerability in Imendio Planner 0.13 allows user-assisted attackers to execute arbitrary code via format string specifiers in a filename.    5.1  Medium  2016-12-20  2008-09-05  View
63751  CVE-2006-5145  Multiple SQL injection vulnerabilities in OlateDownload 3.4.0 allow remote attackers to execute arbitrary SQL commands via the (1) page parameter in details.php or the (2) query parameter in search.php.    7.5  High  2016-12-20  2008-09-05  View
65031  CVE-2006-6486  SQL injection vulnerability in EasyPage allows remote attackers to execute arbitrary SQL commands via unspecified vectors in sptrees/default.aspx, possibly involving the docId parameter. NOTE: this issue appears to have been disputed by a third party researcher, stating that SQL injection is not possible. However, insufficient details were provided to evaluate the dispute.    7.5  High  2016-12-20  2008-09-05  View
65544  CVE-2006-7001  Directory traversal vulnerability in avatar.php in PhpMyChat Plus 1.9 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the L parameter, a different issue than CVE-2006-5897. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    7.1  High  2016-12-20  2008-09-05  View
264  CVE-2008-0279  SQL injection vulnerability in liretopic.php in Xforum 1.4 and possibly others allows remote attackers to execute arbitrary SQL commands via the topic parameter. NOTE: the categorie parameter might also be affected.    7.5  High  2017-01-03  2008-09-05  View

Page 16055 of 17672, showing 5 records out of 88360 total, starting on record 80271, ending on 80275

Actions