NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61335 | CVE-2006-2650 | SQL injection vulnerability in cosmicshop/search.php in CosmicShoppingCart allows remote attackers to execute arbitrary SQL commands via the max parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
61591 | CVE-2006-2906 | The LZW decoding in the gdImageCreateFromGifPtr function in the Thomas Boutell graphics draw (GD) library (aka libgd) 2.0.33 allows remote attackers to cause a denial of service (CPU consumption) via malformed GIF data that causes an infinite loop. | 2 | 5.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
61847 | CVE-2006-3168 | SQL injection vulnerability in CS-Forum before 0.82 allows remote attackers to execute arbitrary SQL commands via the (1) id and (2) debut parameters in (a) read.php, and the (3) search and (4) debut parameters in (b) index.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62103 | CVE-2006-3425 | FastPatch for (a) PatchLink Update Server (PLUS) before 6.1 P1 and 6.2.x before 6.2 SR1 P1, and (b) Novell ZENworks 6.2 SR1 and earlier, does not require authentication for dagent/proxyreg.asp, which allows remote attackers to list, add, or delete PatchLink Distribution Point (PDP) proxy servers via modified (1) List, (2) Proxy, or (3) Delete parameters. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62359 | CVE-2006-3691 | Multiple SQL injection vulnerabilities in VBZooM 1.11 and earlier allow remote attackers to execute arbitrary SQL commands via the UserID parameter to (1) ignore-pm.php, (2) sendmail.php, (3) reply.php or (4) sub-join.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 17053 of 17672, showing 5 records out of 88360 total, starting on record 85261, ending on 85265