NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64470 | CVE-2006-5895 | PHP remote file inclusion vulnerability in core/core.php in EncapsCMS 0.3.6 allows remote attackers to execute arbitrary PHP code via a URL in the root parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
64726 | CVE-2006-6165 | ** DISPUTED ** ld.so in FreeBSD, NetBSD, and possibly other BSD distributions does not remove certain harmful environment variables, which allows local users to gain privileges by passing certain environment variables to loading processes. NOTE: this issue has been disputed by a third party, stating that it is the responsibility of the application to properly sanitize the environment. | 2 | 7.2 | High | 2016-12-20 | 2008-09-05 | View | |
64982 | CVE-2006-6437 | ops3-dmn in Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 allows attackers to cause a denial of service (application crash and core dump) via a certain PS file. | 2 | 7.8 | High | 2016-12-20 | 2008-09-10 | View | |
65238 | CVE-2006-6694 | Directory traversal vulnerability in include/config.php in E-Uploader Pro 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a .. (dot dot) in the language parameter, as demonstrated by uploading a .JPG file containing PHP code, then accessing the file via config.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65494 | CVE-2006-6951 | Cross-site scripting (XSS) vulnerability in blog.php in OdysseusBlog allows remote attackers to inject arbitrary web script or HTML via the page parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17432 of 17672, showing 5 records out of 88360 total, starting on record 87156, ending on 87160