NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63213 | CVE-2006-4580 | register.php in The Address Book 1.04e allows remote attackers to bypass the "Allow User Self-Registration" setting and create arbitrary users by setting the mode parameter to "confirm". | 2 | 7.5 | High | 2016-12-20 | 2008-11-15 | View | |
63469 | CVE-2006-4853 | SQL injection vulnerability in kategorix.asp in Haberx 1.02 through 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter in kategorihaberx.asp. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63725 | CVE-2006-5119 | Multiple cross-site scripting (XSS) vulnerabilities in Zen Cart 1.3.5 allow remote attackers to inject arbitrary web script or HTML via the (1) admin_name or (2) admin_pass parameter in (a) admin/login.php, or the (3) admin_email parameter in (b) admin/password_forgotten.php. | 2 | 4 | Medium | 2016-12-20 | 2011-09-13 | View | |
63981 | CVE-2006-5380 | ** DISPUTED ** Remote file inclusion vulnerability in Contenido CMS allows remote attackers to execute arbitrary PHP code via a URL in the contenido_path parameter to (1) cms/dbfs.php or (2) cms/front_content.php. NOTE: CVE disputes this issue for version 4.6.15, because $contenido_path is set to a static value. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
64237 | CVE-2006-5642 | Unspecified vulnerability in NmnLogger 1.0.0 and earlier has unknown impact and attack vectors related to configuration of mesasge drivers. | 2 | 10 | High | 2016-12-20 | 2011-03-07 | View |
Page 17566 of 17672, showing 5 records out of 88360 total, starting on record 87826, ending on 87830