NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 59674 | CVE-2006-0947 | Thomson SpeedTouch modem running firmware 5.3.2.6.0 allows remote attackers to create users that cannot be deleted via scripting code in the "31" parameter in a NewUser function, which is not filtered by the modem when creating the account, but cannot be deleted by the administrator, possibly due to cleansing that occurs in the administrator interface. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 60186 | CVE-2006-1477 | Multiple PHP remote file inclusion vulnerabilities in Turnkey Web Tools PHP Live Helper 1.8 allow remote attackers to include and execute arbitrary PHP code via the abs_path parameter in (1) initiate.php, (2) waiting.php, (3) welcome.php, (4) admin/index.php, (5) javascript.php, (6) checkchat.php, and (7) blank.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 62234 | CVE-2006-3560 | SQL injection vulnerability in topics.php in Blue Dojo Graffiti Forums 1.0 allows remote attackers to execute arbitrary SQL commands via the f parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 63002 | CVE-2006-4363 | PHP remote file inclusion vulnerability in admin.cropcanvas.php in the CropImage component (com_cropimage) 1.0 for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the cropimagedir parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 63514 | CVE-2006-4898 | PHP remote file inclusion vulnerability in include/phpxd/phpXD.php in guanxiCRM 0.9.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the appconf[rootpath] parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 2239 of 17672, showing 5 records out of 88360 total, starting on record 11191, ending on 11195