NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60372 | CVE-2006-1667 | SQL injection vulnerability in slides.php in Eric Gerdes Crafty Syntax Image Gallery (CSIG) (aka PHP thumbnail Photo Gallery) 3.1g and earlier allows remote authenticated users to execute arbitrary SQL commands via the limitquery_s parameter when the $projectid variable is less than 1, which prevents the $limitquery_s from being set within slides.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
60884 | CVE-2006-2179 | Multiple SQL injection vulnerabilities in CyberBuild allow remote attackers to execute arbitrary SQL commands via the (1) SessionID parameter to login.asp or (2) ProductIndex parameter to browse0.htm. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62420 | CVE-2006-3752 | Multiple SQL injection vulnerabilities in class.php in Professional Home Page Tools Guestbook allow remote attackers to execute arbitrary SQL commands via the (1) hidemail, (2) name, (3) mail, (4) ip, or (5) text parameters. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62676 | CVE-2006-4018 | Heap-based buffer overflow in the pefromupx function in libclamav/upx.c in Clam AntiVirus (ClamAV) 0.81 through 0.88.3 allows remote attackers to execute arbitrary code via a crafted UPX packed file containing sections with large rsize values. | 2 | 7.5 | High | 2016-12-20 | 2011-10-17 | View | |
63188 | CVE-2006-4555 | Buffer overflow in the Retro64 / Miniclip CR64Loader ActiveX control allows remote attackers to execute arbitrary code via unspecified vectors involving an HTML document that references the CLSID of the control. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 16144 of 17672, showing 5 records out of 88360 total, starting on record 80716, ending on 80720