NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
58666  CVE-2007-6671  SQL injection vulnerability in login_form.asp in Instant Softwares Dating Site allows remote attackers to execute arbitrary SQL commands via the Password parameter, a different product than CVE-2006-6021. NOTE: some of these details are obtained from third party information.    7.5  High  2017-01-07  2011-03-07  View
58922  CVE-2006-0182  login.php in ACal Calendar Project 2.2.5 allows remote attackers to bypass authentication by setting the ACalAuthenticate cookie variable to "inside".    7.5  High  2016-12-20  2011-03-07  View
59946  CVE-2006-1232  Multiple SQL injection vulnerabilities in DSDownload 1.0, with magic_quotes_gpc disabled, allow remote attackers to execute arbitrary SQL commands via the (1) key and (2) category parameters to (a) search.php and (b) downloads.php.    7.5  High  2016-12-20  2011-03-07  View
60714  CVE-2006-2009  PHP remote file inclusion vulnerability in agenda.php3 in phpMyAgenda 3.0 Final and earlier allows remote attackers to execute arbitrary PHP code via a URL in the rootagenda parameter.    7.5  High  2016-12-20  2011-03-07  View
61226  CVE-2006-2531  Ipswitch WhatsUp Professional 2006 only verifies the users identity via HTTP headers, which allows remote attackers to spoof being a trusted console and bypass authentication by setting HTTP User-Agent header to "Ipswitch/1.0" and the User-Application header to "NmConsole".    7.5  High  2016-12-20  2011-03-07  View

Page 2418 of 17672, showing 5 records out of 88360 total, starting on record 12086, ending on 12090

Actions