NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64815  CVE-2006-6254  administration/telecharger.php in Cahier de texte 2.0 allows remote attackers to obtain unparsed content (source code) of files via the chemin parameter, as demonstrated using directory traversal sequences to obtain the MySQL username and password from conn_cahier_de_texte.php. NOTE: it is not clear whether the scope of this issue extends above the web document root, and whether directory traversal is the primary vulnerability.    4.3  Medium  2016-12-20  2011-03-07  View
65071  CVE-2006-6526  PHP remote file inclusion vulnerability in index.php in Gizzar 03162002 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the basePath parameter.    7.5  High  2016-12-20  2011-03-07  View
65327  CVE-2006-6783  logahead UNU 1.0 before 20061226 allows remote attackers to upload arbitrary files via unspecified vectors related to plugins/widged/_widged.php (aka the WidgEd plugin), possibly because of an authentication bypass. NOTE: some of these details are obtained from third party information.    7.5  High  2016-12-20  2011-05-19  View
48  CVE-2008-0056  Stack-based buffer overflow in Foundation in Apple Mac OS X 10.4.11 allows context-dependent attackers to execute arbitrary code via a "long pathname with an unexpected structure" that triggers the overflow in NSFileManager.    6.8  Medium  2017-01-03  2011-03-07  View
65584  CVE-2006-7041  The SMTP service in MERCUR Messaging 2005 before Service Pack 4 allows remote attackers to cause a denial of service (infinite loop) via a message in which neither the originator nor recipient address is known.    7.8  High  2016-12-20  2011-03-07  View

Page 2887 of 17672, showing 5 records out of 88360 total, starting on record 14431, ending on 14435

Actions