NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 59454 | CVE-2006-0723 | PHP remote file inclusion vulnerability in preview.php in Reamday Enterprises Magic News Lite 1.2.3, when register_globals is enabled, allows remote attackers to include arbitrary files via a URL in the php_script_path parameter. | 2 | 2.6 | Low | 2016-12-20 | 2011-08-10 | View | |
| 59455 | CVE-2006-0724 | profile.php in Reamday Enterprises Magic News Lite 1.2.3, when register_globals is enabled, allows remote attackers to modify program behavior, potentially bypassing authentication controls, via modified (1) action, (2) passwd, (3) admin_password, (4) new_passwd, and (5) confirm_passwd variables, which are not initialized. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
| 59456 | CVE-2006-0725 | PHP remote file inclusion vulnerability in prepend.php in Plume CMS 1.0.2, when register_globals is enabled, allows remote attackers to include arbitrary files via a URL in the _PX_config[manager_path] parameter. NOTE: this is a different executable and affected version than CVE-2006-2645. | 2 | 6.8 | Medium | 2016-12-20 | 2011-11-10 | View | |
| 59457 | CVE-2006-0726 | Cross-site scripting (XSS) vulnerability in linking.php in CPG-Nuke Dragonfly CMS 9.0.6.1 allows remote attackers to inject arbitrary web script or HTML via a URI that is generated when creating a list of online users. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 59458 | CVE-2006-0727 | SQL injection vulnerability in mstrack.php in MusOX DF MSAnalysis (DFMSA), as used in some environments that use CPG-Nuke Dragonfly CMS, allows remote attackers to trigger path disclosure from a SQL syntax error, and possibly execute arbitrary SQL commands, via certain query data, probably involving the profile name. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 3262 of 17672, showing 5 records out of 88360 total, starting on record 16306, ending on 16310