NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
58942 | CVE-2006-0202 | Dave Nielsen and Patrick Breitenbach PayPal Web Services (aka PHP Toolkit) 0.50 and possibly earlier has (1) world-readable permissions for ipn/logs/ipn_success.txt, which allows local users to view sensitive information (payment data), and (2) world-writable permissions for ipn/logs, which allows local users to delete or replace payment data. | 2 | 3.6 | Low | 2016-12-20 | 2011-03-07 | View | |
59198 | CVE-2006-0460 | Multiple buffer overflows in BomberClone before 0.11.6.2 allow remote attackers to execute arbitrary code via long error messages. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
59454 | CVE-2006-0723 | PHP remote file inclusion vulnerability in preview.php in Reamday Enterprises Magic News Lite 1.2.3, when register_globals is enabled, allows remote attackers to include arbitrary files via a URL in the php_script_path parameter. | 2 | 2.6 | Low | 2016-12-20 | 2011-08-10 | View | |
59710 | CVE-2006-0987 | The default configuration of ISC BIND before 9.4.1-P1, when configured as a caching name server, allows recursive queries and provides additional delegation information to arbitrary IP addresses, which allows remote attackers to cause a denial of service (traffic amplification) via DNS queries with spoofed source IP addresses. | 2 | 5 | Medium | 2016-12-20 | 2013-08-19 | View | |
59966 | CVE-2006-1252 | Eval injection vulnerability in cal.php in Light Weight Calendar (LWC) 1.0 allows remote attackers to execute arbitrary PHP code via the date parameter to index.php. | 2 | 7.5 | High | 2016-12-20 | 2016-11-18 | View |
Page 16524 of 17672, showing 5 records out of 88360 total, starting on record 82616, ending on 82620