NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60802 | CVE-2006-2097 | SQL injection vulnerability in func_msg.php in Invision Power Board (IPB) 2.1.4 allows remote attackers to execute arbitrary SQL commands via the from_contact field in a private message (PM). | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
62594 | CVE-2006-3936 | system/workplace/editors/editor.jsp in Alkacon OpenCms before 6.2.2 allows remote authenticated users to read the source code of arbitrary JSP files by specifying the file in the resource parameter, as demonstrated using index.jsp. | 2 | 4 | Medium | 2016-12-20 | 2008-09-05 | View | |
63362 | CVE-2006-4738 | PHP remote file inclusion vulnerability in phpthumb.php in Jetbox CMS allows remote attackers to execute arbitrary PHP code via a URL in the includes_path parameter. NOTE: The relative_script_path vector is already covered by CVE-2006-2270. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
64130 | CVE-2006-5529 | Cross-site scripting (XSS) vulnerability in smumdadotcom_ascyb_alumni/mod.php in SchoolAlumni Portal 2.26 allows remote attackers to inject arbitrary web script or HTML via the query parameter in a search operation in the katalog module. NOTE: some of these details are obtained from third party information. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
64642 | CVE-2006-6081 | PHP remote file inclusion vulnerability in Smarty_Compiler.class.php in Telaen 1.1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the plugin_file parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 16848 of 17672, showing 5 records out of 88360 total, starting on record 84236, ending on 84240