NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61587 | CVE-2006-2902 | Directory traversal vulnerability in Particle Links 1.2.2 might allow remote attackers to access arbitrary files via ".." sequences in an HTTP request. NOTE: it is not clear whether this issue is legitimate, as the original researcher seems unsure. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
62099 | CVE-2006-3421 | PHP remote file inclusion vulnerability in SmartSiteCMS 1.0 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the root parameter in (1) comment.php, (2) admin/comedit.php, (3) admin/test.php, (4) admin/index.php, and (5) admin/include/inc_adminfoot.php, a different set of vectors than CVE-2006-3162. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
62611 | CVE-2006-3953 | Cross-site scripting (XSS) vulnerability in usercp.php in MyBB (aka MyBulletinBoard) 1.x allows remote attackers to inject arbitrary web script or HTML via the gallery parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
63635 | CVE-2006-5029 | SQL injection vulnerability in thread.php in WoltLab Burning Board (wBB) 2.3.x allows remote attackers to obtain the version numbers of PHP, MySQL, and wBB via the page parameter. NOTE: this issue might be a forced SQL error. Also, the original report was disputed by a third party for 2.3.3 and 2.3.4. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63891 | CVE-2006-5288 | Cisco 2700 Series Wireless Location Appliances before 2.1.34.0 have a default administrator username "root" and password "password," which allows remote attackers to obtain administrative privileges, aka Bug ID CSCsb92893. | 2 | 10 | High | 2016-12-20 | 2008-09-05 | View |
Page 16966 of 17672, showing 5 records out of 88360 total, starting on record 84826, ending on 84830