NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 55859 | CVE-2007-3710 | PHP remote file inclusion vulnerability in example/gamedemo/inc.functions.php in PHP Comet-Server allows remote attackers to execute arbitrary PHP code via a URL in the projectPath parameter. | 2 | 7.5 | High | 2017-01-07 | 2012-10-30 | View | |
| 60467 | CVE-2006-1762 | Directory traversal vulnerability in index.php in blur6ex 0.3.452 allows remote attackers to include arbitrary files via the shard parameter. NOTE: this issue can be exploited to produce resultant XSS when the parameter has XSS manipulations, and path disclosure with other invalid values. | 2 | 7.5 | High | 2016-12-20 | 2009-04-08 | View | |
| 60723 | CVE-2006-2018 | SQL injection vulnerability in calendar.php in vBulletin 3.0.x allows remote attackers to execute arbitrary SQL commands via the eventid parameter. NOTE: the affected version has been disputed by the vendor. It appears that this is the same issue as CVE-2004-0036, which was fixed in 2.3.4. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
| 61747 | CVE-2006-3064 | SQL injection vulnerability in the add_hit function in include/function.inc.php in Coppermine Photo Gallery (CPG) 1.4.8, when "Keep detailed hit statistics" is enabled, allows remote attackers to execute arbitrary SQL commands via the (1) referer and (2) user-agent HTTP headers. | 2 | 7.5 | High | 2016-12-20 | 2011-08-08 | View | |
| 63795 | CVE-2006-5189 | PHP remote file inclusion vulnerability in funzioni/lib/show_hlp.php in klinza professional cms 5.0.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the appl[APPL] parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 2518 of 17672, showing 5 records out of 88360 total, starting on record 12586, ending on 12590