NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60286 | CVE-2006-1578 | Multiple SQL injection vulnerabilities in Keystone Digital Library Suite (DLS) 1.5.4 and earlier allow remote attackers to execute arbitrary SQL commands via the subject_type_id parameter in (1) the index page and (2) the search module. | 2 | 6.4 | Medium | 2016-12-20 | 2008-11-03 | View | |
60542 | CVE-2006-1837 | SQL injection vulnerability in archiv2.php in Fuju News 1.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
60798 | CVE-2006-2093 | Nessus before 2.2.8, and 3.x before 3.0.3, allows user-assisted attackers to cause a denial of service (memory consumption) via a NASL script that calls split with an invalid sep parameter. NOTE: a design goal of the NASL language is to facilitate sharing of security tests by guaranteeing that a script "can not do anything nasty." This issue is appropriate for CVE only if Nessus users have an expectation that a split statement will not use excessive memory. | 2 | 2.6 | Low | 2016-12-20 | 2011-09-01 | View | |
61054 | CVE-2006-2352 | Multiple cross-site scripting (XSS) vulnerabilities in IPswitch WhatsUp Professional 2006 and WhatsUp Professional 2006 Premium allow remote attackers to inject arbitrary web script or HTML via unknown vectors in (1) NmConsole/Tools.asp and (2) NmConsole/DeviceSelection.asp. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
61310 | CVE-2006-2615 | ping.php in Russcom.Ping allows remote attackers to execute arbitrary commands via shell metacharacters in the domain parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 16902 of 17672, showing 5 records out of 88360 total, starting on record 84506, ending on 84510