NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
62421  CVE-2006-3753  setcookie.php for the administration login in Professional Home Page Tools Guestbook records the hash of the administrator password in a cookie, which allows attackers to conduct brute force password guessing attacks after obtaining the hash.    6.4  Medium  2016-12-20  2008-09-05  View
62677  CVE-2006-4019  Dynamic variable evaluation vulnerability in compose.php in SquirrelMail 1.4.0 to 1.4.7 allows remote attackers to overwrite arbitrary program variables and read or write the attachments and preferences of other users.    6.4  Medium  2016-12-20  2016-10-17  View
62933  CVE-2006-4294  Directory traversal vulnerability in viewfile in TWiki 4.0.0 through 4.0.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.    Medium  2016-12-20  2011-03-07  View
63189  CVE-2006-4556  ** DISPUTED ** PHP remote file inclusion vulnerability in index.php in the JIM component for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. NOTE: another researcher has stated that the product distribution does not include an index.php file. Also, this might be related to CVE-2006-4242.    7.5  High  2016-12-20  2008-09-05  View
63445  CVE-2006-4828  PHP remote file inclusion vulnerability in zipndownload.php in PhotoPost 4.0 through 4.6 allows remote attackers to execute arbitrary PHP code via a URL in the PP_PATH parameter.    7.5  High  2016-12-20  2008-09-05  View

Page 17424 of 17672, showing 5 records out of 88360 total, starting on record 87116, ending on 87120

Actions