NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59610 | CVE-2006-0881 | Multiple PHP remote file include vulnerabilities in gorum/gorumlib.php in Noah"s Classifieds 1.3, when register_globals is enabled, allow remote attackers to include arbitrary PHP files via the (1) upperTemplate and (2) lowerTemplate parameters, as demonstrated using the lowerTemplate parameter to index.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62426 | CVE-2006-3758 | inc/init.php in Archive Mode (Light) in MyBB (aka MyBulletinBoard) 1.1.4 calls the extract function with EXTR_OVERWRITE on HTTP POST and GET variables, which allows remote attackers to overwrite arbitrary variables, as demonstrated via an SQL injection using the _SERVER[HTTP_CLIENT_IP] parameter in archive/index.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
62682 | CVE-2006-4024 | The FESTAHES_Load function in pce/hes.c in Festalon 0.5.0 through 0.5.5 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a negative LoadAddr value in a HES file, which is used as an offset in a memcpy operation and leads to a buffer underflow. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63194 | CVE-2006-4561 | Mozilla Firefox 1.5.0.6 allows remote attackers to execute arbitrary JavaScript in the context of the browser"s session with an arbitrary intranet web server, by hosting script on an Internet web server that can be made inaccessible by the attacker and that has a domain name under the attacker"s control, which can force the browser to drop DNS pinning and perform a new DNS query for the domain name after the script is already running. | 2 | 7.5 | High | 2016-12-20 | 2008-11-15 | View | |
63450 | CVE-2006-4833 | Verso NetPerformer FRAD ACT SDM-95xx 7.xx (R1) and earlier, SDM-93xx 10.x.x (R2) and earlier, and SDM-92xx 9.x.x (R1) and earlier allow remote attackers to cause a denial of service (hang or reboot) via an ICMP packet with the same destination and source address and port, aka the "Land" vulnerability. | 2 | 7.8 | High | 2016-12-20 | 2011-03-07 | View |
Page 16309 of 17672, showing 5 records out of 88360 total, starting on record 81541, ending on 81545