NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
60405  CVE-2006-1700  Buy.php in Aweb Scripts Seller uses predictable cookies for authentication based on the time and the script number, which allows remote attackers to bypass authentication.    7.5  High  2016-12-20  2008-09-05  View
60661  CVE-2006-1956  The com_rss option (rss.php) in (1) Mambo and (2) Joomla! allows remote attackers to obtain sensitive information via an invalid feed parameter, which reveals the path in an error message.    Medium  2016-12-20  2008-09-05  View
60917  CVE-2006-2214  Multiple SQL injection vulnerabilities in 4images 1.7.1 and earlier allow remote attackers to execute arbitrary SQL commands via the sessionid parameter in (1) top.php and (2) member.php. NOTE: this issue has also been reported to affect 1.7.2.    7.5  High  2016-12-20  2011-03-07  View
61173  CVE-2006-2478  Bitrix Site Manager 4.1.x allows remote attackers to redirect users to other websites via a modified back_url during a HTTP POST request. NOTE: this issue has been referred to as "cross-site scripting," but that is inconsistent with the common use of the term.    Medium  2016-12-20  2011-03-07  View
61429  CVE-2006-2744  PHP remote file inclusion vulnerability in p-popupgallery.php in F@cile Interactive Web 0.8.41 through 0.8.5 allows remote attackers to execute arbitrary PHP code via a URL in the l parameter.    7.5  High  2016-12-20  2011-03-07  View

Page 17066 of 17672, showing 5 records out of 88360 total, starting on record 85326, ending on 85330

Actions