NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
58871 | CVE-2006-0131 | boastMachine 3.1 allows remote attackers to obtain sensitive information via a direct request to (1) footer.php and (2) side_menu.php, which reveals the path in an error message. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
60407 | CVE-2006-1702 | PHP remote file inclusion vulnerability in spip_login.php3 in SPIP 1.8.3 allows remote attackers to execute arbitrary PHP code via a URL in the url parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
60919 | CVE-2006-2216 | Open Bulletin Board (OpenBB) 1.0.8 allows remote attackers to obtain the full path of the web server via an invalid pforums parameter to (1) misc.php and (2) member.php. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
61687 | CVE-2006-3003 | details.php in Easy Ad-Manager allows remote attackers to obtain the full installation path via an invalid mbid parameter, which leaks the path in an error message. NOTE: this might be resultant from another vulnerability, since this vector also produces cross-site scripting (XSS). NOTE: on 20060829, the vendor notified CVE that this issue has been fixed. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
62967 | CVE-2006-4328 | SQL injection vulnerability in admin.php in CloudNine Interactive Links Manager 2006-06-12, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the nick parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 1614 of 17672, showing 5 records out of 88360 total, starting on record 8066, ending on 8070