NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64816 | CVE-2006-6255 | Direct static code injection vulnerability in util.php in the NukeAI 0.0.3 Beta module for PHP-Nuke, aka Program E is an AIML chatterbot, allows remote attackers to upload and execute arbitrary PHP code via a filename with a .php extension in the filename parameter and code in the moreinfo parameter, which is saved to a filename under descriptions/, which is accessible via a direct request. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65072 | CVE-2006-6527 | PHP remote file inclusion vulnerability in guest.php in Gizzar 03162002 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the basePath parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65328 | CVE-2006-6784 | SQL injection vulnerability in Netbula Anyboard allows remote attackers to execute arbitrary SQL commands via the user name in the login form. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
65585 | CVE-2006-7042 | Cross-site scripting (XSS) vulnerability in directory/index.php in Chipmunk directory allows remote attackers to inject arbitrary web script or HTML via the start parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
73009 | CVE-2004-2632 | phpMyAdmin 2.5.1 up to 2.5.7 allows remote attackers to modify configuration settings and gain unauthorized access to MySQL servers via modified $cfg["Servers"] variables. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 16448 of 17672, showing 5 records out of 88360 total, starting on record 82236, ending on 82240