NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 64293 | CVE-2006-5718 | Cross-site scripting (XSS) vulnerability in error.php in phpMyAdmin 2.6.4 through 2.9.0.2 allows remote attackers to inject arbitrary web script or HTML via UTF-7 or US-ASCII encoded characters, which are injected into an error message, as demonstrated by a request with a utf7 charset parameter accompanied by UTF-7 data. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 64549 | CVE-2006-5974 | fetchmail 6.3.5 and 6.3.6 before 6.3.6-rc4, when refusing a message delivered via the mda option, allows remote attackers to cause a denial of service (crash) via unknown vectors that trigger a NULL pointer dereference when calling the (1) ferror or (2) fflush functions. | 2 | 7.8 | High | 2016-12-20 | 2011-03-07 | View | |
| 64805 | CVE-2006-6244 | Coalescent Systems freePBX (formerly Asterisk Management Portal) before 2.2.0rc1 allows attackers to execute arbitrary commands via shell metacharacters in (1) CALLERID(name) or (2) CALLERID(number). | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 65061 | CVE-2006-6516 | Multiple PHP remote file inclusion vulnerabilities in KDPics 1.16 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) page parameter to (a) index.php3, or the (2) lib_path parameter to (b) authenticate.inc.php3 or (c) lib/exifer/exif.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 65317 | CVE-2006-6773 | pages/register/register.php in Fishyshoop 0.930 beta allows remote attackers to create arbitrary administrative users by setting the is_admin HTTP POST parameter to 1. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 2578 of 17672, showing 5 records out of 88360 total, starting on record 12886, ending on 12890