NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 60454 | CVE-2006-1749 | PHP remote file inclusion vulnerability in config.php in phpListPro 2.0 and earlier allows remote attackers to execute arbitrary PHP code via the returnpath parameter. NOTE: this issue was later reported to affect 2.01 as well. | 2 | 7.5 | High | 2016-12-20 | 2011-08-23 | View | |
| 60710 | CVE-2006-2005 | Eval injection vulnerability in index.php in ClanSys 1.1 allows remote attackers to execute arbitrary PHP code via PHP code in the page parameter, as demonstrated by using an "include" statement that is injected into the eval statement. NOTE: this issue has been described as file inclusion by some sources, but that is just one attack; the primary vulnerability is eval injection. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
| 60966 | CVE-2006-2263 | SQL injection vulnerability in shopcurrency.asp in VP-ASP 6.00 allows remote attackers to execute arbitrary SQL commands via the cid parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 61222 | CVE-2006-2527 | Admin/admin.php in phpBazar 2.1.0 and earlier allows remote attackers to bypass the authentication process and gain unauthorized access to the administrative section by setting the action parameter to edit_member and the value parameter to 1. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 61478 | CVE-2006-2793 | SQL injection vulnerability in Anket.asp in ASPSitem 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the hid parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 2994 of 17672, showing 5 records out of 88360 total, starting on record 14966, ending on 14970