NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
60454  CVE-2006-1749  PHP remote file inclusion vulnerability in config.php in phpListPro 2.0 and earlier allows remote attackers to execute arbitrary PHP code via the returnpath parameter. NOTE: this issue was later reported to affect 2.01 as well.    7.5  High  2016-12-20  2011-08-23  View
60710  CVE-2006-2005  Eval injection vulnerability in index.php in ClanSys 1.1 allows remote attackers to execute arbitrary PHP code via PHP code in the page parameter, as demonstrated by using an "include" statement that is injected into the eval statement. NOTE: this issue has been described as file inclusion by some sources, but that is just one attack; the primary vulnerability is eval injection.    7.5  High  2016-12-20  2008-09-05  View
60966  CVE-2006-2263  SQL injection vulnerability in shopcurrency.asp in VP-ASP 6.00 allows remote attackers to execute arbitrary SQL commands via the cid parameter.    7.5  High  2016-12-20  2011-03-07  View
61222  CVE-2006-2527  Admin/admin.php in phpBazar 2.1.0 and earlier allows remote attackers to bypass the authentication process and gain unauthorized access to the administrative section by setting the action parameter to edit_member and the value parameter to 1.    7.5  High  2016-12-20  2011-03-07  View
61478  CVE-2006-2793  SQL injection vulnerability in Anket.asp in ASPSitem 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the hid parameter.    7.5  High  2016-12-20  2008-09-05  View

Page 2994 of 17672, showing 5 records out of 88360 total, starting on record 14966, ending on 14970

Actions