NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64823 | CVE-2006-6262 | Directory traversal vulnerability in mboard.php in PHPJunkYard (aka Klemen Stirn) MBoard 1.22 and earlier allows remote attackers to create arbitrary empty files via a .. (dot dot) in the orig_id parameter. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
65079 | CVE-2006-6534 | Multiple cross-site scripting (XSS) vulnerabilities in osCommerce 3.0a3 allow remote attackers to inject arbitrary web script or HTML via the (1) set parameter to admin/modules.php, the (2) selected_box parameter to definitiva/admin/customers.php, the (3) lID parameter to admin/languages_definitions.php, or the (4) pID parameter to admin/products.php. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
65335 | CVE-2006-6791 | SQL injection vulnerability in SelGruFra.asp in chatwm 1.0 allows remote attackers to execute arbitrary SQL commands via the (1) txtUse and (2) txtPas parameters. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65592 | CVE-2006-7049 | The Method method in WikkaWiki (Wikka Wiki) before 1.1.6.2 calls the strstr and strrpos functions with the wrong argument order, which allows remote attackers to bypass intended access restrictions and access arbitrary PHP files. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
70712 | CVE-2004-0261 | oj.cgi in OpenJournal 2.0 through 2.0.5 allows remote attackers to bypass authentication and access the control panel via a 0 in the uid parameter. | 2 | 10 | High | 2016-12-20 | 2016-10-17 | View |
Page 16488 of 17672, showing 5 records out of 88360 total, starting on record 82436, ending on 82440