NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
60536  CVE-2006-1831  Direct static code injection vulnerability in sysinfo.cgi in sysinfo 1.21 and possibly other versions before 2.25 allows remote attackers to execute arbitrary commands via a leading ; (semicolon) in the name parameter in a systemdoc action, which is injected into phpinfo.php.    7.5  High  2016-12-20  2011-03-07  View
61048  CVE-2006-2346  vpopmail 5.4.14 and 5.4.15, with cleartext passwords enabled, allows remote attackers to authenticate to an account that does not have a cleartext password set by using a blank password to (1) SMTP AUTH or (2) APOP.    7.5  High  2016-12-20  2011-03-07  View
61560  CVE-2006-2875  Stack-based buffer overflow in the CL_ParseDownload function of Quake 3 Engine 1.32c and earlier, as used in multiple products, allows remote attackers to execute arbitrary code via a svc_download command with compressed data that triggers the overflow during expansion.    7.5  High  2016-12-20  2011-03-07  View
62072  CVE-2006-3394  SQL injection vulnerability in the files mod in index.php in BXCP 0.3.0.4 allows remote attackers to execute arbitrary SQL commands via the where parameter in a view action.    7.5  High  2016-12-20  2011-03-07  View
62584  CVE-2006-3926  Multiple SQL injection vulnerabilities in PhpProBid 5.24 allow remote attackers to execute arbitrary SQL commands via the (1) view or (2) start parameters to (a) viewfeedback.php or the (3) orderType parameter to (b) categories.php.    7.5  High  2016-12-20  2008-09-05  View

Page 3329 of 17672, showing 5 records out of 88360 total, starting on record 16641, ending on 16645

Actions