NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61174 | CVE-2006-2479 | The Update functionality in Bitrix Site Manager 4.1.x does not verify the authenticity of downloaded updates, which allows remote attackers to obtain sensitive information and ultimately execute arbitrary PHP code via DNS cache poisoning that redirects the user to a malicious site. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61430 | CVE-2006-2745 | Multiple PHP remote file inclusion vulnerabilities in F@cile Interactive Web 0.8.5 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the (1) pathfile parameter in (a) p-editpage.php and (b) p-editbox.php, and the (2) mytheme and (3) myskin parameters in multiple "p-themes" index.inc.php files including (c) lowgraphic, (d) classic, (e) puzzle, (f) simple, and (g) ciao. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
61686 | CVE-2006-3002 | Cross-site scripting (XSS) vulnerability in details.php in Easy Ad-Manager allows remote attackers to inject arbitrary web script or HTML via the mbid parameter, which is reflected in an error message. NOTE: on 20060829, the vendor notified CVE that this issue has been fixed. | 2 | 5.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61942 | CVE-2006-3263 | SQL injection vulnerability in the Weblinks module (weblinks.php) in Mambo 4.6rc1 and earlier allows remote attackers to execute arbitrary SQL commands via the catid parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
62198 | CVE-2006-3524 | Buffer overflow in SIPfoundry sipXtapi released before 20060324 allows remote attackers to execute arbitrary code via a long CSeq field value in an INVITE message. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 17127 of 17672, showing 5 records out of 88360 total, starting on record 85631, ending on 85635