NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63213  CVE-2006-4580  register.php in The Address Book 1.04e allows remote attackers to bypass the "Allow User Self-Registration" setting and create arbitrary users by setting the mode parameter to "confirm".    7.5  High  2016-12-20  2008-11-15  View
63469  CVE-2006-4853  SQL injection vulnerability in kategorix.asp in Haberx 1.02 through 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter in kategorihaberx.asp.    7.5  High  2016-12-20  2011-03-07  View
63725  CVE-2006-5119  Multiple cross-site scripting (XSS) vulnerabilities in Zen Cart 1.3.5 allow remote attackers to inject arbitrary web script or HTML via the (1) admin_name or (2) admin_pass parameter in (a) admin/login.php, or the (3) admin_email parameter in (b) admin/password_forgotten.php.    Medium  2016-12-20  2011-09-13  View
63981  CVE-2006-5380  ** DISPUTED ** Remote file inclusion vulnerability in Contenido CMS allows remote attackers to execute arbitrary PHP code via a URL in the contenido_path parameter to (1) cms/dbfs.php or (2) cms/front_content.php. NOTE: CVE disputes this issue for version 4.6.15, because $contenido_path is set to a static value.    7.5  High  2016-12-20  2008-09-05  View
64237  CVE-2006-5642  Unspecified vulnerability in NmnLogger 1.0.0 and earlier has unknown impact and attack vectors related to configuration of mesasge drivers.    10  High  2016-12-20  2011-03-07  View

Page 17566 of 17672, showing 5 records out of 88360 total, starting on record 87826, ending on 87830

Actions