NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63213 | CVE-2006-4580 | register.php in The Address Book 1.04e allows remote attackers to bypass the "Allow User Self-Registration" setting and create arbitrary users by setting the mode parameter to "confirm". | 2 | 7.5 | High | 2016-12-20 | 2008-11-15 | View | |
63469 | CVE-2006-4853 | SQL injection vulnerability in kategorix.asp in Haberx 1.02 through 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter in kategorihaberx.asp. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63981 | CVE-2006-5380 | ** DISPUTED ** Remote file inclusion vulnerability in Contenido CMS allows remote attackers to execute arbitrary PHP code via a URL in the contenido_path parameter to (1) cms/dbfs.php or (2) cms/front_content.php. NOTE: CVE disputes this issue for version 4.6.15, because $contenido_path is set to a static value. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
64237 | CVE-2006-5642 | Unspecified vulnerability in NmnLogger 1.0.0 and earlier has unknown impact and attack vectors related to configuration of mesasge drivers. | 2 | 10 | High | 2016-12-20 | 2011-03-07 | View | |
64493 | CVE-2006-5918 | Unrestricted file upload vulnerability in RapidKill (aka PHP Rapid Kill) 5.7 Pro, and certain other versions, allows remote attackers to upload and execute arbitrary PHP scripts via the "Link to Download" field. NOTE: it is possible that the field value is restricted to files on specific public web sites. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 16846 of 17672, showing 5 records out of 88360 total, starting on record 84226, ending on 84230