NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64372 | CVE-2006-5797 | Multiple SQL injection vulnerabilities in default.asp in Xenis.creator CMS allow remote attackers to execute arbitrary SQL commands via the (1) nav, (2) s, or (3) print parameters. | 2 | 7.5 | High | 2016-12-20 | 2016-10-17 | View | |
64628 | CVE-2006-6067 | Multiple SQL injection vulnerabilities in 20/20 DataShed (aka Real Estate Listing System) allow remote attackers to execute arbitrary SQL commands via the (1) itemID parameter to (a) f-email.asp, or the (2) peopleID and (2) sort_order parameters to (b) listings.asp, different vectors than CVE-2006-5955. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
64884 | CVE-2006-6338 | Unrestricted file upload vulnerability in upload/index.php in deV!L`z Clanportal (DZCP) before 1.3.6.1 allows remote attackers to upload and execute arbitrary .php files by embedding PHP code in a JPEG or GIF file that is uploaded to inc/images/uploads/userpics/. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
65140 | CVE-2006-6596 | HyperAccess 8.4 allows user-assisted remote attackers to execute arbitrary vbscript and commands via a session (HAW) file, which can be automatically opened using Internet Explorer. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
65396 | CVE-2006-6853 | Buffer overflow in Durian Web Application Server 3.02 freeware on Windows allows remote attackers to execute arbitrary code via a long string in a crafted packet to TCP port 4002. | 2 | 10 | High | 2016-12-20 | 2011-03-07 | View |
Page 16846 of 17672, showing 5 records out of 88360 total, starting on record 84226, ending on 84230