NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64013  CVE-2006-5412  admin.php in PHP Outburst Easynews 4.4.1 and earlier, when register_globals is enabled, allows remote attackers to bypass authentication, and gain the ability to execute arbitrary code, via the en_login_id parameter.    5.1  Medium  2016-12-20  2011-03-07  View
64269  CVE-2006-5675  Multiple unspecified vulnerabilities in Pentaho Business Intelligence (BI) Suite before 1.2 RC3 (1.2.0.470-RC3) have unknown impact and attack vectors, related to "MySQL Scripts need changes for security," possibly SQL injection vulnerabilities associated with these scripts.    10  High  2016-12-20  2011-03-07  View
64525  CVE-2006-5950  Unspecified vulnerability in ALTools ALFTP FTP Server 4.1 beta 1, and possibly earlier, allows remote authenticated users to obtain the installation path via unknown vectors related to the REN command, probably due to response messages. NOTE: the provenance of this information is unknown; details are obtained from third party sources.    Medium  2016-12-20  2011-03-07  View
64781  CVE-2006-6220  Multiple SQL injection vulnerabilities in Recipes Website (Recipes Complete Website) 1.1.14 allow remote attackers to execute arbitrary SQL commands via the (1) recipeid parameter to recipe.php or the (2) categoryid parameter to list.php.    6.8  Medium  2016-12-20  2011-03-07  View
65293  CVE-2006-6749  Buffer overflow in the parse_expression function in parse_config in OpenSER 1.1.0 allows attackers to have an unknown impact via a long str parameter.    9.3  High  2016-12-20  2011-03-07  View

Page 3041 of 17672, showing 5 records out of 88360 total, starting on record 15201, ending on 15205

Actions