NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63580 | CVE-2006-4972 | Cross-site scripting (XSS) vulnerability in archive/index.php/forum-4.html in MyBB (aka MyBulletinBoard) allows remote attackers to inject arbitrary web script or HTML via the navbits[][name] parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
63836 | CVE-2006-5230 | PHP remote file inclusion vulnerability in forum.php in FreeForum 0.9.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the fpath parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
64092 | CVE-2006-5491 | Multiple SQL injection vulnerabilities in include/index.php in UltraCMS 0.9 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
64348 | CVE-2006-5773 | Directory traversal vulnerability in index.php in FreeWebshop 2.2.1 and earlier allows remote attackers to read arbitrary files and disclose the installation path via a .. (dot dot) in the action parameter. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
64604 | CVE-2006-6043 | PHP file inclusion vulnerability in loginform-inc.php in Oliver (formerly Webshare) 1.2.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a UNC share pathname or a local file pathname in the conf[motdfile] parameter, which is accessed by the file_exists function. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 16703 of 17672, showing 5 records out of 88360 total, starting on record 83511, ending on 83515