NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
58871  CVE-2006-0131  boastMachine 3.1 allows remote attackers to obtain sensitive information via a direct request to (1) footer.php and (2) side_menu.php, which reveals the path in an error message.    Medium  2016-12-20  2008-09-05  View
60407  CVE-2006-1702  PHP remote file inclusion vulnerability in spip_login.php3 in SPIP 1.8.3 allows remote attackers to execute arbitrary PHP code via a URL in the url parameter.    7.5  High  2016-12-20  2008-09-05  View
60919  CVE-2006-2216  Open Bulletin Board (OpenBB) 1.0.8 allows remote attackers to obtain the full path of the web server via an invalid pforums parameter to (1) misc.php and (2) member.php.    Medium  2016-12-20  2008-09-05  View
61687  CVE-2006-3003  details.php in Easy Ad-Manager allows remote attackers to obtain the full installation path via an invalid mbid parameter, which leaks the path in an error message. NOTE: this might be resultant from another vulnerability, since this vector also produces cross-site scripting (XSS). NOTE: on 20060829, the vendor notified CVE that this issue has been fixed.    4.3  Medium  2016-12-20  2008-09-05  View
62967  CVE-2006-4328  SQL injection vulnerability in admin.php in CloudNine Interactive Links Manager 2006-06-12, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the nick parameter.    5.1  Medium  2016-12-20  2008-09-05  View

Page 1614 of 17672, showing 5 records out of 88360 total, starting on record 8066, ending on 8070

Actions