NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
61304  CVE-2006-2609  artmedic newsletter 4.1.2 and possibly other versions, when register_globals is enabled, allows remote attackers to modify arbitrary files and execute arbitrary PHP code via the email parameter to newsletter_log.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    5.1  Medium  2016-12-20  2011-03-07  View
61560  CVE-2006-2875  Stack-based buffer overflow in the CL_ParseDownload function of Quake 3 Engine 1.32c and earlier, as used in multiple products, allows remote attackers to execute arbitrary code via a svc_download command with compressed data that triggers the overflow during expansion.    7.5  High  2016-12-20  2011-03-07  View
61816  CVE-2006-3137  Cross-site scripting (XSS) vulnerability in productDetail.asp in Edge eCommerce Shop allows remote attackers to inject arbitrary web script or HTML via the cart_id parameter.    4.3  Medium  2016-12-20  2011-03-07  View
62072  CVE-2006-3394  SQL injection vulnerability in the files mod in index.php in BXCP 0.3.0.4 allows remote attackers to execute arbitrary SQL commands via the where parameter in a view action.    7.5  High  2016-12-20  2011-03-07  View
62328  CVE-2006-3660  Unspecified vulnerability in Microsoft PowerPoint 2003 has unknown impact and user-assisted attack vectors related to powerpnt.exe. NOTE: due to the lack of available details as of 20060717, it is unclear how this is related to CVE-2006-3655, CVE-2006-3656, and CVE-2006-3590, although it is possible that they are all different.    7.6  High  2016-12-20  2011-04-12  View

Page 16867 of 17672, showing 5 records out of 88360 total, starting on record 84331, ending on 84335

Actions