NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 63062 | CVE-2006-4427 | index.php in eFiction before 2.0.7 allows remote attackers to bypass authentication and gain privileges by setting the (1) adminloggedin, (2) loggedin, and (3) level parameters to "1". | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 64342 | CVE-2006-5767 | PHP remote file inclusion vulnerability in includes/xhtml.php in Drake CMS 0.2.2 alpha rev.846 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the d_root parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2011-08-22 | View | |
| 64598 | CVE-2006-6037 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Dan Jensen Travelsized CMS 0.4.1 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) page, (2) page_id, or (3) language parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2016-11-18 | View | |
| 65623 | CVE-2006-7080 | Directory traversal vulnerability in the avatar upload feature in exV2 2.0.4.3 and earlier allows remote attackers to delete arbitrary files via ".." sequences in the old_avatar parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 599 | CVE-2008-0624 | Buffer overflow in the YMP Datagrid ActiveX control (datagrid.dll) in Yahoo! JukeBox 2.2.2.56 allows remote attackers to execute arbitrary code via a long argument to the AddButton method, a different vulnerability than CVE-2008-0623. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View |
Page 3121 of 17672, showing 5 records out of 88360 total, starting on record 15601, ending on 15605