NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60861 | CVE-2006-2156 | Directory traversal vulnerability in help/index.php in X7 Chat 2.0 and earlier allows remote attackers to include arbitrary files via .. (dot dot) sequences in the help_file parameter. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
61117 | CVE-2006-2418 | Cross-site scripting (XSS) vulnerabilities in certain versions of phpMyAdmin before 2.8.0.4 allow remote attackers to inject arbitrary web script or HTML via the db parameter in unknown scripts. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61373 | CVE-2006-2688 | SQL injection vulnerability in the employees node (class.employee.inc) in Achievo 1.1.0 and earlier and 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the atkselector parameter. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
61629 | CVE-2006-2945 | Unspecified vulnerability in the user profile change functionality in DokuWiki, when Access Control Lists are enabled, allows remote authenticated users to read unauthorized files via unknown attack vectors. | 2 | 4 | Medium | 2016-12-20 | 2011-03-10 | View | |
61885 | CVE-2006-3206 | register.php in Ultimate PHP Board (UPB) 1.9.6 and earlier allows remote attackers to create arbitrary accounts via the "[NR]" sequence in the signature field, which is used to separate multiple records. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17281 of 17672, showing 5 records out of 88360 total, starting on record 86401, ending on 86405