NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
81123 | CVE-2002-2172 | Informed (1) Designer and (2) Filler 3.05 does not zero out newly allocated disk blocks as an encrypted file grows in size, which may allow attackers to obtain sensitive information. | 2 | 2.1 | Low | 2017-01-05 | 2008-09-05 | View | |
60131 | CVE-2006-1422 | SQL injection vulnerability in details_view.php in PHP Booking Calendar 1.0c and earlier allows remote attackers to execute arbitrary SQL commands via the event_id parameter. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
62691 | CVE-2006-4034 | PHP remote file inclusion vulnerability in include/html/config.php in ModernGigabyte ModernBill 1.6 allows remote attackers to execute arbitrary PHP code via a URL in the DIR parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63715 | CVE-2006-5109 | Devellion CubeCart 2.0.x allows remote attackers to obtain sensitive information via a direct request for (1) link_navi.php or (2) spotlight.php, which reveals the path in various error messages. NOTE: the information.php, language.php, list_docs.php, popular_prod.php, sale.php, check_sum.php, and cat_navi.php vectors are already covered by CVE-2005-0607. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
64227 | CVE-2006-5632 | Cross-site scripting (XSS) vulnerability in change_pass.php in iG Shop 1.4 allows remote attackers to inject arbitrary web script or HTML via the id parameter, a different vulnerability than CVE-2006-5631. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17474 of 17672, showing 5 records out of 88360 total, starting on record 87366, ending on 87370