NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61304 | CVE-2006-2609 | artmedic newsletter 4.1.2 and possibly other versions, when register_globals is enabled, allows remote attackers to modify arbitrary files and execute arbitrary PHP code via the email parameter to newsletter_log.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
61560 | CVE-2006-2875 | Stack-based buffer overflow in the CL_ParseDownload function of Quake 3 Engine 1.32c and earlier, as used in multiple products, allows remote attackers to execute arbitrary code via a svc_download command with compressed data that triggers the overflow during expansion. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
61816 | CVE-2006-3137 | Cross-site scripting (XSS) vulnerability in productDetail.asp in Edge eCommerce Shop allows remote attackers to inject arbitrary web script or HTML via the cart_id parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
62072 | CVE-2006-3394 | SQL injection vulnerability in the files mod in index.php in BXCP 0.3.0.4 allows remote attackers to execute arbitrary SQL commands via the where parameter in a view action. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62328 | CVE-2006-3660 | Unspecified vulnerability in Microsoft PowerPoint 2003 has unknown impact and user-assisted attack vectors related to powerpnt.exe. NOTE: due to the lack of available details as of 20060717, it is unclear how this is related to CVE-2006-3655, CVE-2006-3656, and CVE-2006-3590, although it is possible that they are all different. | 2 | 7.6 | High | 2016-12-20 | 2011-04-12 | View |
Page 16867 of 17672, showing 5 records out of 88360 total, starting on record 84331, ending on 84335