NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63905 | CVE-2006-5302 | Multiple PHP remote file inclusion vulnerabilities in Redaction System 1.0000 allow remote attackers to execute arbitrary PHP code via a URL in the (1) lang_prefix parameter to (a) conn.php, (b) sesscheck.php, (c) wap/conn.php, or (d) wap/sesscheck.php, or the (2) lang parameter to (e) index.php. | 2 | 7.5 | High | 2016-12-20 | 2011-09-08 | View | |
64161 | CVE-2006-5560 | Cross-site scripting (XSS) vulnerability in heading.php in Boesch ProgSys 0.151 and earlier allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to admin/index.php, and unspecified vectors related to certain other files. NOTE: some of these details are obtained from third party information. | 2 | 4.3 | Medium | 2016-12-20 | 2012-08-06 | View | |
64417 | CVE-2006-5842 | The keystore file in Unicore Client before 5.6 build 5, when running on Unix systems, has insecure default permissions, which allows local users to obtain sensitive information. | 2 | 2.1 | Low | 2016-12-20 | 2011-03-07 | View | |
64673 | CVE-2006-6112 | LifeType 1.0.x and 1.1.x have insufficient access control for all of the PHP scripts under (1) class/ and (2) plugins/, which allows remote attackers to obtain the installation path via a direct request to any of the scripts, as demonstrated by (a) bayesianfilter.class.php and (b) bootstrap.php, which leaks the path in an error message. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
64929 | CVE-2006-6383 | PHP 5.2.0 and 4.4 allows local users to bypass safe_mode and open_basedir restrictions via a malicious path and a null byte before a ";" in a session_save_path argument, followed by an allowed path, which causes a parsing inconsistency in which PHP validates the allowed path but sets session.save_path to the malicious path. | 2 | 4.6 | Medium | 2016-12-20 | 2008-11-15 | View |
Page 17116 of 17672, showing 5 records out of 88360 total, starting on record 85576, ending on 85580