NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
65519 | CVE-2006-6976 | PHP remote file inclusion vulnerability in centipaid_class.php in CentiPaid 1.4.2 and earlier allows remote attackers to execute arbitrary code via a URL in the absolute_path parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
240 | CVE-2008-0255 | SQL injection vulnerability in archive.php in iGaming 1.5, and 1.3.1 and earlier, allows remote attackers to execute arbitrary SQL commands via the section parameter. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
65776 | CVE-2006-7233 | Cross-site scripting (XSS) vulnerability in the login form (login.jsp) of the admin console in Openfire (formerly Wildfire) 2.6.0, and possibly other versions before 3.5.3, allows remote attackers to inject arbitrary web script or HTML via the url parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2009-02-06 | View | |
496 | CVE-2008-0521 | Multiple directory traversal vulnerabilities in Bubbling Library 1.32 allow remote attackers to read arbitrary files via a .. (dot dot) in the uri parameter to dispatcher.php in (1) examples/dispatcher/framework/, (2) examples/dispatcher/, (3) examples/wizard/, and (4) PHP/, different vectors than CVE-2008-0545. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
66032 | CVE-2005-0269 | The file extension check in GNUBoard 3.40 and earlier only verifies extensions that contain all lowercase letters, which allows remote attackers to upload arbitrary files via file extensions that include uppercase letters. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 16234 of 17672, showing 5 records out of 88360 total, starting on record 81166, ending on 81170