NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59165  CVE-2006-0427  Unspecified vulnerability in BEA WebLogic Server and WebLogic Express 9.0 and 8.1 through SP5 allows malicious EJBs or servlet applications to decrypt system passwords, possibly by accessing functionality that should have been restricted.    2.1  Low  2016-12-20  2011-03-07  View
59421  CVE-2006-0690  Multiple SQL injection vulnerabilities in TTS Time Tracking Software 3.0 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.    7.5  High  2016-12-20  2011-03-07  View
59677  CVE-2006-0950  unalz 0.53 allows user-assisted attackers to overwrite arbitrary files via an ALZ archive with ".." (dot dot) sequences in a filename.    2.6  Low  2016-12-20  2016-10-17  View
59933  CVE-2006-1219  Directory traversal vulnerability in Gallery 2.0.3 and earlier, and 2.1 before RC-2a, allows remote attackers to include arbitrary PHP files via ".." (dot dot) sequences in the stepOrder parameter to (1) upgrade/index.php or (2) install/index.php.    Medium  2016-12-20  2011-03-07  View
60189  CVE-2006-1480  Directory traversal vulnerability in start.php in WebAlbum 2.02 allows remote attackers to include arbitrary files and execute commands by (1) injecting code into local log files via GET commands, then (2) accessing that log via a .. (dot dot) sequence and a trailing null (%00) byte in the skin2 COOKIE parameter.    5.1  Medium  2016-12-20  2011-03-07  View

Page 1799 of 17672, showing 5 records out of 88360 total, starting on record 8991, ending on 8995

Actions