NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64272  CVE-2006-5678  ** DISPUTED ** PHP remote file inclusion vulnerability in common/visiteurs/include/library.inc.php in J-Pierre DEZELUS Les Visiteurs 2.0.1, as used in phpMyConferences (phpMyConference) 8.0.2 and possibly other products, allows remote attackers to execute arbitrary PHP code via a URL in the lvc_modules_dir parameter. NOTE: CVE disputes this vulnerability, because the inclusion occurs in a function that is not called during a direct request to library.inc.php.    7.5  High  2016-12-20  2008-09-05  View
65296  CVE-2006-6752  Buffer overflow in FTPRush 1.0.0.610 might allow attackers to gain privileges via a long Host field. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information. Also, it is not clear whether this issue crosses security boundaries.    7.5  High  2016-12-20  2008-09-05  View
65553  CVE-2006-7010  The mosgetparam implementation in Joomla! before 1.0.10, does not set a variable"s data type to integer when the variable"s default value is numeric, which has unspecified impact and attack vectors, which may permit SQL injection attacks.    7.5  High  2016-12-20  2008-09-05  View
273  CVE-2008-0288  Multiple SQL injection vulnerabilities in ImageAlbum 2.0.0b2 allow remote attackers to execute arbitrary SQL commands via the id, which is not properly handled in (1) classes/IADomain.php, (2) classes/IACollection.php, and (3) classes/IAUser.php, as demonstrated via the id parameter in a collection.imageview action.    7.5  High  2017-01-03  2008-09-05  View
785  CVE-2008-0814  Directory traversal vulnerability in download.php in Tracking Requirements & Use Cases (TRUC) 0.11.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the upload_filename parameter.    6.4  Medium  2017-01-03  2008-09-05  View

Page 16108 of 17672, showing 5 records out of 88360 total, starting on record 80536, ending on 80540

Actions