NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
57643 | CVE-2007-5578 | Basic Analysis and Security Engine (BASE) before 1.3.8 sends a redirect to the web browser but does not exit, which allows remote attackers to bypass authentication via (1) base_main.php, (2) base_qry_alert.php, and possibly other vectors. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
59691 | CVE-2006-0968 | The ncprwsnt service in NCP Network Communication Secure Client 8.11 Build 146, and possibly other versions, allows local users to execute arbitrary code by modifying the connect.bat script, which is automatically executed by the service after a connection is established. | 2 | 7.2 | High | 2016-12-20 | 2008-09-05 | View | |
61227 | CVE-2006-2532 | stats.php in Destiney Rated Images Script 0.5.0 allows remote attackers to obtain the installation path via an invalid s parameter, which displays the path in an error message. NOTE: this issue was originally claimed to be SQL injection, but CVE analysis shows that the problem is related to an invalid value that prevents some variables from being set. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
61483 | CVE-2006-2798 | Multiple cross-site scripting (XSS) vulnerabilities in phpCommunityCalendar 4.0.3 allow remote attackers to inject arbitrary web script or HTML via the (1) LoName parameter in (a) week.php and (b) month.php and (2) AddressLink parameter in (c) event.php. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
61739 | CVE-2006-3055 | Multiple SQL injection vulnerabilities in VBZooM 1.02 allow remote attackers to execute arbitrary SQL commands via the (1) QuranID, (2) ShowByQuranID, or (3) Action parameters to meaning.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 16266 of 17672, showing 5 records out of 88360 total, starting on record 81326, ending on 81330