NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59942 | CVE-2006-1228 | Session fixation vulnerability in Drupal 4.5.x before 4.5.8 and 4.6.x before 4.5.8 allows remote attackers to gain privileges by tricking a user to click on a URL that fixes the session identifier. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
60198 | CVE-2006-1489 | Multiple SQL injection vulnerabilities in FusionZONE CouponZONE local.cfm in 4.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) companyid, (2) scat, and (3) coid parameters. | 2 | 7.5 | High | 2016-12-20 | 2008-11-03 | View | |
60454 | CVE-2006-1749 | PHP remote file inclusion vulnerability in config.php in phpListPro 2.0 and earlier allows remote attackers to execute arbitrary PHP code via the returnpath parameter. NOTE: this issue was later reported to affect 2.01 as well. | 2 | 7.5 | High | 2016-12-20 | 2011-08-23 | View | |
60710 | CVE-2006-2005 | Eval injection vulnerability in index.php in ClanSys 1.1 allows remote attackers to execute arbitrary PHP code via PHP code in the page parameter, as demonstrated by using an "include" statement that is injected into the eval statement. NOTE: this issue has been described as file inclusion by some sources, but that is just one attack; the primary vulnerability is eval injection. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
60966 | CVE-2006-2263 | SQL injection vulnerability in shopcurrency.asp in VP-ASP 6.00 allows remote attackers to execute arbitrary SQL commands via the cid parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 215 of 17672, showing 5 records out of 88360 total, starting on record 1071, ending on 1075