NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60405 | CVE-2006-1700 | Buy.php in Aweb Scripts Seller uses predictable cookies for authentication based on the time and the script number, which allows remote attackers to bypass authentication. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
60661 | CVE-2006-1956 | The com_rss option (rss.php) in (1) Mambo and (2) Joomla! allows remote attackers to obtain sensitive information via an invalid feed parameter, which reveals the path in an error message. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
60917 | CVE-2006-2214 | Multiple SQL injection vulnerabilities in 4images 1.7.1 and earlier allow remote attackers to execute arbitrary SQL commands via the sessionid parameter in (1) top.php and (2) member.php. NOTE: this issue has also been reported to affect 1.7.2. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
61173 | CVE-2006-2478 | Bitrix Site Manager 4.1.x allows remote attackers to redirect users to other websites via a modified back_url during a HTTP POST request. NOTE: this issue has been referred to as "cross-site scripting," but that is inconsistent with the common use of the term. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61429 | CVE-2006-2744 | PHP remote file inclusion vulnerability in p-popupgallery.php in F@cile Interactive Web 0.8.41 through 0.8.5 allows remote attackers to execute arbitrary PHP code via a URL in the l parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 17066 of 17672, showing 5 records out of 88360 total, starting on record 85326, ending on 85330