NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64816  CVE-2006-6255  Direct static code injection vulnerability in util.php in the NukeAI 0.0.3 Beta module for PHP-Nuke, aka Program E is an AIML chatterbot, allows remote attackers to upload and execute arbitrary PHP code via a filename with a .php extension in the filename parameter and code in the moreinfo parameter, which is saved to a filename under descriptions/, which is accessible via a direct request.    7.5  High  2016-12-20  2011-03-07  View
65072  CVE-2006-6527  PHP remote file inclusion vulnerability in guest.php in Gizzar 03162002 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the basePath parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    7.5  High  2016-12-20  2011-03-07  View
65328  CVE-2006-6784  SQL injection vulnerability in Netbula Anyboard allows remote attackers to execute arbitrary SQL commands via the user name in the login form.    7.5  High  2016-12-20  2008-09-05  View
65585  CVE-2006-7042  Cross-site scripting (XSS) vulnerability in directory/index.php in Chipmunk directory allows remote attackers to inject arbitrary web script or HTML via the start parameter.    6.8  Medium  2016-12-20  2008-09-05  View
73009  CVE-2004-2632  phpMyAdmin 2.5.1 up to 2.5.7 allows remote attackers to modify configuration settings and gain unauthorized access to MySQL servers via modified $cfg["Servers"] variables.    7.5  High  2016-12-20  2008-09-05  View

Page 16448 of 17672, showing 5 records out of 88360 total, starting on record 82236, ending on 82240

Actions