NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61225 | CVE-2006-2530 | avatar_upload.asp in Avatar MOD 1.3 for Snitz Forums 3.4, and possibly other versions, allows remote attackers to bypass file type checks and upload arbitrary files via a null byte in the file name, as discovered by the Codescan product. | 2 | 5 | Medium | 2016-12-20 | 2012-10-24 | View | |
61481 | CVE-2006-2796 | Cross-site scripting (XSS) vulnerability in gallery.php in Captivate 1.0 allows remote attackers to inject arbitrary web script or HTML via the page parameter, which is reflected in an error message. | 2 | 6.8 | Medium | 2016-12-20 | 2013-01-03 | View | |
61737 | CVE-2006-3053 | ** DISPUTED ** PHP remote file inclusion vulnerability in common.php in PHORUM 5.1.13 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the PHORUM[http_path] parameter. NOTE: this issue has been disputed by the vendor, who states "common.php is checked on the very first line of non-comment code that it is not being called directly. It has been this way in all 5.x version of Phorum." CVE analysis concurs with the vendor. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
61993 | CVE-2006-3315 | PHP remote file inclusion vulnerability in page.php in an unspecified RahnemaCo.com product, possibly eShop, allows remote attackers to execute arbitrary PHP code via a URL in the osCsid parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
62249 | CVE-2006-3575 | Unknown vulnerability in the Buffer Overflow Protection in McAfee VirusScan Enterprise 8.0.0 allows local users to cause a denial of service (unstable operation) via a long string in the (1) "Process name", (2) "Module name", or (3) "API name" fields. | 2 | 2.1 | Low | 2016-12-20 | 2008-09-05 | View |
Page 233 of 17672, showing 5 records out of 88360 total, starting on record 1161, ending on 1165