NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62512 | CVE-2006-3845 | Stack-based buffer overflow in lzh.fmt in WinRAR 3.00 through 3.60 beta 6 allows remote attackers to execute arbitrary code via a long filename in a LHA archive. | 2 | 9.3 | High | 2016-12-20 | 2011-03-07 | View | |
62768 | CVE-2006-4114 | SQL injection vulnerability in view_com.php in Nicolas Grandjean PHPMyRing 4.2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the idsite parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63280 | CVE-2006-4647 | PHP remote file inclusion vulnerability in news.php in Sponge News 2.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the sndir parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63536 | CVE-2006-4921 | PHP remote file inclusion vulnerability in Site@School (S@S) 2.4.03 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cmsdir parameter to starnet/modules/include/include.php. NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2016-12-20 | 2016-10-17 | View | |
64816 | CVE-2006-6255 | Direct static code injection vulnerability in util.php in the NukeAI 0.0.3 Beta module for PHP-Nuke, aka Program E is an AIML chatterbot, allows remote attackers to upload and execute arbitrary PHP code via a filename with a .php extension in the filename parameter and code in the moreinfo parameter, which is saved to a filename under descriptions/, which is accessible via a direct request. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 1646 of 17672, showing 5 records out of 88360 total, starting on record 8226, ending on 8230