NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
60784  CVE-2006-2079  Cross-site scripting (XSS) vulnerability in portfolio.php in Verosky Media Instant Photo Gallery, possibly before 1.0.2, allows remote attackers to inject arbitrary web script or HTML via the cat_id parameter.    4.3  Medium  2016-12-20  2008-09-05  View
61040  CVE-2006-2338  PlaNet Concept plaNetStat 20050127 allows remote attackers to gain administrative privileges, and view and configure log files, via a direct request to the (1) admin.php or (2) settings.php page.    7.5  High  2016-12-20  2008-09-05  View
61296  CVE-2006-2601  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-2589. Reason: This candidate is a duplicate of CVE-2006-2589. Notes: All CVE users should reference CVE-2006-2589 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.        2016-12-20  2008-09-10  View
61552  CVE-2006-2867  SQL injection vulnerability in editpost.php in CoolForum 0.8.3 beta and earlier allows remote attackers to execute arbitrary SQL commands via the post parameter.    7.5  High  2016-12-20  2008-09-05  View
61808  CVE-2006-3128  choose_file.php in easy-CMS 0.1.2, when mod_mime is installed, does not restrict uploads of filenames with multiple extensions, which allows remote attackers to execute arbitrary PHP code by uploading a PHP file with a GIF file extension, then directly accessing that file in the Repositories directory.    4.6  Medium  2016-12-20  2011-03-07  View

Page 16819 of 17672, showing 5 records out of 88360 total, starting on record 84091, ending on 84095

Actions