NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62421 | CVE-2006-3753 | setcookie.php for the administration login in Professional Home Page Tools Guestbook records the hash of the administrator password in a cookie, which allows attackers to conduct brute force password guessing attacks after obtaining the hash. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
63189 | CVE-2006-4556 | ** DISPUTED ** PHP remote file inclusion vulnerability in index.php in the JIM component for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. NOTE: another researcher has stated that the product distribution does not include an index.php file. Also, this might be related to CVE-2006-4242. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63445 | CVE-2006-4828 | PHP remote file inclusion vulnerability in zipndownload.php in PhotoPost 4.0 through 4.6 allows remote attackers to execute arbitrary PHP code via a URL in the PP_PATH parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63701 | CVE-2006-5095 | ** DISPUTED ** PHP remote file inclusion vulnerability in index.php in MyPhotos 0.1.3b beta allows remote attackers to execute arbitrary PHP code via the includesdir parameter. NOTE: this issue is disputed by CVE on 20060927, since the includesdir is defined before being used when the product is installed according to the provided instructions. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
64725 | CVE-2006-6164 | The _dl_unsetenv function in loader.c in the ELF ld.so in OpenBSD 3.9 and 4.0 does not properly remove duplicate environment variables, which allows local users to pass dangerous variables such as LD_PRELOAD to loading processes, which might be leveraged to gain privileges. | 2 | 7.2 | High | 2016-12-20 | 2008-09-05 | View |
Page 17390 of 17672, showing 5 records out of 88360 total, starting on record 86946, ending on 86950