NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63023  CVE-2006-4385  Buffer overflow in Apple QuickTime before 7.1.3 allows user-assisted remote attackers to execute arbitrary code via a crafted SGI image.    5.1  Medium  2016-12-20  2011-03-07  View
63279  CVE-2006-4646  Cross-site scripting (XSS) vulnerability in the Drupal 4.7 Pathauto module before pathauto_node.inc 1.17.2.1 and the Drupal 4.6 Pathauto module before pathauto_node.inc 1.14.2.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    6.8  Medium  2016-12-20  2011-03-07  View
63535  CVE-2006-4920  Multiple PHP remote file inclusion vulnerabilities in Site@School (S@S) 2.4.02 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the cmsdir parameter to (1) starnet/modules/sn_allbum/slideshow.php, and (2) starnet/themes/editable/main.inc.php.    7.5  High  2016-12-20  2016-10-17  View
63791  CVE-2006-5185  Eval injection vulnerability in Template.php in HAMweather 3.9.8.4 and earlier allows remote attackers to execute arbitrary code via a modified query string, which is supplied to an eval function call within the do_parse_code function.    7.5  High  2016-12-20  2011-03-07  View
64047  CVE-2006-5446  SQL injection vulnerability in lobby/config.php in Casinosoft Casino Script (aka Masvet) 3.2 allows remote attackers to execute arbitrary SQL commands via the cfam parameter.    5.1  Medium  2016-12-20  2011-03-07  View

Page 270 of 17672, showing 5 records out of 88360 total, starting on record 1346, ending on 1350

Actions