NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63579 | CVE-2006-4971 | MyBB (aka MyBulletinBoard) allows remote attackers to obtain sensitive information via a direct request for inc/plugins/hello.php, which reveals the path in an error message. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
63835 | CVE-2006-5229 | OpenSSH portable 4.1 on SUSE Linux, and possibly other platforms and versions, and possibly under limited configurations, allows remote attackers to determine valid usernames via timing discrepancies in which responses take longer for valid usernames than invalid ones, as demonstrated by sshtime. NOTE: as of 20061014, it appears that this issue is dependent on the use of manually-set passwords that causes delays when processing /etc/shadow due to an increased number of rounds. | 2 | 2.6 | Low | 2016-12-20 | 2011-08-26 | View | |
64091 | CVE-2006-5490 | Multiple SQL injection vulnerabilities in Segue Content Management System (CMS) before 1.5.8 allow remote attackers to execute arbitrary SQL commands via unspecified vectors. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
64347 | CVE-2006-5772 | Multiple SQL injection vulnerabilities in index.php in FreeWebshop 2.2.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) password and (2) prod parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
64603 | CVE-2006-6042 | PHP remote file inclusion vulnerability in core/editor.php in phpWebThings 1.5.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the editor_insert_bottom parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 16697 of 17672, showing 5 records out of 88360 total, starting on record 83481, ending on 83485