NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63280  CVE-2006-4647  PHP remote file inclusion vulnerability in news.php in Sponge News 2.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the sndir parameter.    7.5  High  2016-12-20  2011-03-07  View
63536  CVE-2006-4921  PHP remote file inclusion vulnerability in Site@School (S@S) 2.4.03 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cmsdir parameter to starnet/modules/include/include.php. NOTE: some of these details are obtained from third party information.    7.5  High  2016-12-20  2016-10-17  View
63792  CVE-2006-5186  PHP remote file inclusion vulnerability in functions.php in phpMyProfiler 0.9.6 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the pmp_rel_path parameter.    5.1  Medium  2016-12-20  2011-03-07  View
64048  CVE-2006-5447  Cross-site scripting (XSS) vulnerability in index.php in DEV Web Management System (WMS) 1.5 allows remote attackers to inject arbitrary web script or HTML via the action parameter.    4.3  Medium  2016-12-20  2008-09-05  View
64304  CVE-2006-5729  Yazd Discussion Forum before 3.0 beta does not properly manage forum permissions, which allows remote authenticated users to (1) reply to a message in an arbitrary forum, if authorized to create a message in any forum; and (2) perform certain unauthorized forum actions, related to an "error in how the permissions were assembled" that assigns extra permissions to users.    6.5  Medium  2016-12-20  2008-09-05  View

Page 276 of 17672, showing 5 records out of 88360 total, starting on record 1376, ending on 1380

Actions