NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 64036 | CVE-2006-5435 | ** DISPUTED ** PHP remote file inclusion vulnerability in groupcp.php in phpBB 2.0.10 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. NOTE: CVE and the vendor dispute this vulnerability because $phpbb_root_path is defined before use. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
| 64292 | CVE-2006-5717 | Multiple cross-site scripting (XSS) vulnerabilities in Zend Google Data Client Library (ZendGData) Preview 0.2.0 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters in (1) basedemo.php and (2) calenderdemo.php in samples/, and other unspecified files. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 64548 | CVE-2006-5973 | Off-by-one buffer overflow in Dovecot 1.0test53 through 1.0.rc14, and possibly other versions, when index files are used and mmap_disable is set to "yes," allows remote authenticated IMAP or POP3 users to cause a denial of service (crash) via unspecified vectors involving the cache file. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 64804 | CVE-2006-6243 | Multiple SQL injection vulnerabilities in index.asp in FipsSHOP allow remote attackers to execute arbitrary SQL commands via the (1) cat or (2) did parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 65060 | CVE-2006-6515 | Mantis before 1.1.0a2 sets the default value of $g_bug_reminder_threshold to "reporter" instead of a more privileged role, which has unknown impact and attack vectors, possibly related to frequency of reminders. | 2 | 10 | High | 2016-12-20 | 2008-09-05 | View |
Page 2225 of 17672, showing 5 records out of 88360 total, starting on record 11121, ending on 11125