NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62961 | CVE-2006-4322 | PHP remote file inclusion vulnerability in estateagent.php in the EstateAgent component (com_estateagent) for Mambo, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. | 2 | 7.5 | High | 2016-12-20 | 2016-08-30 | View | |
63217 | CVE-2006-4584 | Tr Forum 2.0 allows remote attackers to bypass authentication and add an administrative account via the login and password parameters to admin/insert_admin.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63473 | CVE-2006-4857 | SQL injection vulnerability in default.asp (aka the login page) in ClickTech ClickBlog 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) form_codeword (aka the Password field) parameters. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63729 | CVE-2006-5123 | Multiple PHP remote file inclusion vulnerabilities in Albrecht Guenther PHProjekt 5.1.x before 5.1.2 allow remote attackers to execute arbitrary PHP code via a URL in the (1) lib_path or (2) lang_path parameter in unspecified files, related to code changes intended to fix inclusion, a different vulnerability than CVE-2002-0451, CVE-2006-4204, and CVE-2006-4609. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63985 | CVE-2006-5384 | PHP remote file inclusion vulnerability in modification/SendAlertEmail.php in CDS Software Consortium CDS Agenda 4.2.9 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the AGE parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 17589 of 17672, showing 5 records out of 88360 total, starting on record 87941, ending on 87945