NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64820 | CVE-2006-6259 | Multiple directory traversal vulnerabilities in (a) class/functions.php and (b) class/m_bro.php in AlternC 0.9.5 and earlier allow remote attackers to (1) create arbitrary files and directories via a .. (dot dot) in the "create name" field and (2) read arbitrary files via a .. (dot dot) in the "web root" field when configuring a subdomain. | 2 | 10 | High | 2016-12-20 | 2011-03-07 | View | |
65076 | CVE-2006-6531 | Cross-site scripting (XSS) vulnerability in the Help Tip module before 4.7.x-1.0 for Drupal allows remote attackers to inject arbitrary web script or HTML, and possibly obtain administrative access, via node titles. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
65332 | CVE-2006-6788 | Multiple PHP remote file inclusion vulnerabilities in LuckyBot 3 allow remote attackers to execute arbitrary PHP code via a URL in the dir parameter to (1) run.php or (2) ircbot.class.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
65589 | CVE-2006-7046 | PHP remote file inclusion vulnerability in cmpro.intern/login.inc.php for Clan Manager Pro (CMPRO) 1.1.0 allows remote attackers to execute arbitrary PHP code via a URL in the rootpath parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 9.3 | High | 2016-12-20 | 2008-09-05 | View | |
71989 | CVE-2004-1610 | SalesLogix 6.1 uses client-specified pathnames for writing certain files, which might allow remote authenticated users to create arbitrary files and execute code via the (1) vMME.AttachmentPath or (2) vMME.LibraryPath variables. | 2 | 7.5 | High | 2016-12-20 | 2016-10-17 | View |
Page 300 of 17672, showing 5 records out of 88360 total, starting on record 1496, ending on 1500