NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63580  CVE-2006-4972  Cross-site scripting (XSS) vulnerability in archive/index.php/forum-4.html in MyBB (aka MyBulletinBoard) allows remote attackers to inject arbitrary web script or HTML via the navbits[][name] parameter.    5.1  Medium  2016-12-20  2011-03-07  View
63836  CVE-2006-5230  PHP remote file inclusion vulnerability in forum.php in FreeForum 0.9.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the fpath parameter.    7.5  High  2016-12-20  2011-03-07  View
64092  CVE-2006-5491  Multiple SQL injection vulnerabilities in include/index.php in UltraCMS 0.9 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters.    7.5  High  2016-12-20  2008-09-05  View
64348  CVE-2006-5773  Directory traversal vulnerability in index.php in FreeWebshop 2.2.1 and earlier allows remote attackers to read arbitrary files and disclose the installation path via a .. (dot dot) in the action parameter.    Medium  2016-12-20  2011-03-07  View
64604  CVE-2006-6043  PHP file inclusion vulnerability in loginform-inc.php in Oliver (formerly Webshare) 1.2.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a UNC share pathname or a local file pathname in the conf[motdfile] parameter, which is accessed by the file_exists function.    6.8  Medium  2016-12-20  2011-03-07  View

Page 16703 of 17672, showing 5 records out of 88360 total, starting on record 83511, ending on 83515

Actions