NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62443 | CVE-2006-3775 | SQL injection vulnerability in the init function in class_session.php in MyBB (aka MyBulletinBoard) 1.1.5 allows remote attackers to execute arbitrary SQL commands via the CLIENT-IP HTTP header ($_SERVER["HTTP_CLIENT_IP"] variable), as utilized by index.php. | 2 | 7.5 | High | 2016-12-20 | 2011-08-08 | View | |
62699 | CVE-2006-4042 | Multiple SQL injection vulnerabilities in trackback.php in myWebland myBloggie 2.1.4 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) title, (2) url, (3) excerpt, or (4) blog_name parameters. | 2 | 7.5 | High | 2016-12-20 | 2011-09-06 | View | |
62955 | CVE-2006-4316 | SSH Tectia Management Agent 2.1.2 allows local users to gain root privileges by running a program called sshd, which is obtained from a process listing when the "Restart" action is selected from the Management server GUI, which causes the agent to locate the pathname of the user"s program and restart it with root privileges. | 2 | 7.2 | High | 2016-12-20 | 2008-09-05 | View | |
63211 | CVE-2006-4578 | export.php in The Address Book 1.04e writes username and password hash information into a publicly accessible file when dumping the MySQL database contents, which allows remote attackers to obtain sensitive information. | 2 | 7.5 | High | 2016-12-20 | 2008-11-15 | View | |
63467 | CVE-2006-4851 | PHP remote file inclusion vulnerability in system/_b/contentFiles/gBHTMLEditor.php in BolinOS 4.5.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the gBRootPath parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information. | 2 | 7.5 | High | 2016-12-20 | 2016-11-28 | View |
Page 17554 of 17672, showing 5 records out of 88360 total, starting on record 87766, ending on 87770