NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59383  CVE-2006-0652  WHMCompleteSolution (WHMCS) before 2.3 assigns incorrect permissions to "resellers", which allows remote authenticated users to perform privileged actions or obtain sensitive information. NOTE: this report is based on a vendor bug report that identified "incorrect permissions." However, the vendor did not label it a security issue, and there was no statement regarding whether or not the permissions were actually more permissive than intended. If in fact the permissions were more restrictive than intended, then this would be a functional problem but not a vulnerability.    6.5  Medium  2016-12-20  2011-03-07  View
59639  CVE-2006-0912  Oreka before 0.5 allows remote attackers to cause a denial of service (application crash) via a "certain RTP sequence."    Medium  2016-12-20  2011-03-07  View
60663  CVE-2006-1958  Multiple SQL injection vulnerabilities in WWWThreads RC 3 allow remote attackers to execute arbitrary SQL commands via (1) the forumreferrer cookie to register.php and (2) the messages parameter in message_list.php.    6.4  Medium  2016-12-20  2011-03-07  View
60919  CVE-2006-2216  Open Bulletin Board (OpenBB) 1.0.8 allows remote attackers to obtain the full path of the web server via an invalid pforums parameter to (1) misc.php and (2) member.php.    Medium  2016-12-20  2008-09-05  View
61175  CVE-2006-2480  Format string vulnerability in Dia 0.94 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code by triggering errors or warnings, as demonstrated via format string specifiers in a .bmp filename. NOTE: the original exploit was demonstrated through a command line argument, but there are other mechanisms for input that are automatically processed by Dia, such as a crafted .dia file.    5.1  Medium  2016-12-20  2011-03-07  View

Page 17390 of 17672, showing 5 records out of 88360 total, starting on record 86946, ending on 86950

Actions