NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59504  CVE-2006-0774  SQL injection vulnerability in deleteSession() in DB_eSession library 1.0.2 and earlier, as used in multiple products, allows remote attackers to execute arbitrary SQL commands via the $_sess_id_set variable, which is usually derived from PHPSESSID.    7.5  High  2016-12-20  2011-03-07  View
59505  CVE-2006-0775  Multiple SQL injection vulnerabilities in show.php in BirthSys 3.1 allow remote attackers to execute arbitrary SQL commands via the $month variable. NOTE: a vector regarding the $date parameter and data.php (date.php) was originally reported, but this appears to be in error.    7.5  High  2016-12-20  2011-03-07  View
59506  CVE-2006-0776  Cross-site scripting (XSS) vulnerability in guestex.pl in Teca Scripts Guestex 1.0 allows remote attackers to inject arbitrary web script or HTML via the url parameter.    4.3  Medium  2016-12-20  2011-03-07  View
59507  CVE-2006-0777  Unspecified vulnerability in guestex.pl in Teca Scripts Guestex 1.0 allows remote attackers to execute arbitrary shell commands via the email parameter, possibly involving shell metacharacters.    7.5  High  2016-12-20  2011-03-07  View
59508  CVE-2006-0778  Multiple SQL injection vulnerabilities in XMB Forums 1.9.3 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) $u2u_select array parameter to u2u.inc.php and (2) $val variable (fidpw0 cookie value) in today.php.    7.5  High  2016-12-20  2011-03-07  View

Page 3272 of 17672, showing 5 records out of 88360 total, starting on record 16356, ending on 16360

Actions