NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59165 | CVE-2006-0427 | Unspecified vulnerability in BEA WebLogic Server and WebLogic Express 9.0 and 8.1 through SP5 allows malicious EJBs or servlet applications to decrypt system passwords, possibly by accessing functionality that should have been restricted. | 2 | 2.1 | Low | 2016-12-20 | 2011-03-07 | View | |
59421 | CVE-2006-0690 | Multiple SQL injection vulnerabilities in TTS Time Tracking Software 3.0 allow remote attackers to execute arbitrary SQL commands via unspecified vectors. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
59677 | CVE-2006-0950 | unalz 0.53 allows user-assisted attackers to overwrite arbitrary files via an ALZ archive with ".." (dot dot) sequences in a filename. | 2 | 2.6 | Low | 2016-12-20 | 2016-10-17 | View | |
59933 | CVE-2006-1219 | Directory traversal vulnerability in Gallery 2.0.3 and earlier, and 2.1 before RC-2a, allows remote attackers to include arbitrary PHP files via ".." (dot dot) sequences in the stepOrder parameter to (1) upgrade/index.php or (2) install/index.php. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
60189 | CVE-2006-1480 | Directory traversal vulnerability in start.php in WebAlbum 2.02 allows remote attackers to include arbitrary files and execute commands by (1) injecting code into local log files via GET commands, then (2) accessing that log via a .. (dot dot) sequence and a trailing null (%00) byte in the skin2 COOKIE parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 1799 of 17672, showing 5 records out of 88360 total, starting on record 8991, ending on 8995