NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
60802  CVE-2006-2097  SQL injection vulnerability in func_msg.php in Invision Power Board (IPB) 2.1.4 allows remote attackers to execute arbitrary SQL commands via the from_contact field in a private message (PM).    7.5  High  2016-12-20  2008-09-05  View
62594  CVE-2006-3936  system/workplace/editors/editor.jsp in Alkacon OpenCms before 6.2.2 allows remote authenticated users to read the source code of arbitrary JSP files by specifying the file in the resource parameter, as demonstrated using index.jsp.    Medium  2016-12-20  2008-09-05  View
63362  CVE-2006-4738  PHP remote file inclusion vulnerability in phpthumb.php in Jetbox CMS allows remote attackers to execute arbitrary PHP code via a URL in the includes_path parameter. NOTE: The relative_script_path vector is already covered by CVE-2006-2270.    7.5  High  2016-12-20  2008-09-05  View
64130  CVE-2006-5529  Cross-site scripting (XSS) vulnerability in smumdadotcom_ascyb_alumni/mod.php in SchoolAlumni Portal 2.26 allows remote attackers to inject arbitrary web script or HTML via the query parameter in a search operation in the katalog module. NOTE: some of these details are obtained from third party information.    5.1  Medium  2016-12-20  2008-09-05  View
64642  CVE-2006-6081  PHP remote file inclusion vulnerability in Smarty_Compiler.class.php in Telaen 1.1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the plugin_file parameter.    7.5  High  2016-12-20  2008-09-05  View

Page 16848 of 17672, showing 5 records out of 88360 total, starting on record 84236, ending on 84240

Actions