NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
60396  CVE-2006-1691  SQL injection vulnerability in MWNewsletter 1.0.0b allows remote attackers to execute arbitrary SQL commands via the user_name parameter to unsubscribe.php.    7.5  High  2016-12-20  2011-03-07  View
60652  CVE-2006-1947  Multiple SQL injection vulnerabilities in plexum.php in NicPlex Plexum X5 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) pagesize, (2) maxrec, and (3) startpos parameters.    7.5  High  2016-12-20  2011-03-07  View
61164  CVE-2006-2469  The HTTP handlers in BEA WebLogic Server 9.0, 8.1 up to SP5, 7.0 up to SP6, and 6.1 up to SP7 stores the username and password in cleartext in the WebLogic Server log when access to a web application or protected JWS fails, which allows attackers to gain privileges.    7.5  High  2016-12-20  2011-03-07  View
62444  CVE-2006-3776  PHP remote file inclusion vulnerability in order/index.php in IDevSpot (1) PhpHostBot 1.0 and (2) AutoHost 3.0 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.    7.5  High  2016-12-20  2011-08-22  View
63468  CVE-2006-4852  SQL injection vulnerability in browse.asp in QuadComm Q-Shop 3.5 allows remote attackers to execute arbitrary SQL commands via the OrderBy parameter.    7.5  High  2016-12-20  2011-03-07  View

Page 16818 of 17672, showing 5 records out of 88360 total, starting on record 84086, ending on 84090

Actions