NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63744  CVE-2006-5138  Groupee UBB.threads 6.5.1.1 allows remote attackers to obtain sensitive information via a direct request for cron/php/subscriptions.php, which reveals the path in an error message.    Medium  2016-12-20  2008-09-05  View
64256  CVE-2006-5662  SQL injection vulnerability in easy notesManager (eNM) 0.0.1 allows remote attackers to execute arbitrary SQL commands via (1) the username parameter in login.php and (2) a search on the "search page."    7.5  High  2016-12-20  2008-09-05  View
64768  CVE-2006-6207  ** DISPUTED ** SQL injection vulnerability in products.asp in Evolve shopping cart (aka Evolve Merchant) allows remote attackers to execute arbitrary SQL commands via the partno parameter. NOTE: the vendor disputes this issue, stating that it is a forced SQL error.    7.5  High  2016-12-20  2008-09-05  View
1025  CVE-2008-1064  Cross-site scripting (XSS) vulnerability in images.php in the Red Mexico RMSOFT Gallery System (GS) 2.0 module (aka rmgs) for XOOPS allows remote attackers to inject arbitrary web script or HTML via the q parameter.    4.3  Medium  2017-01-03  2008-09-05  View
66561  CVE-2005-0811  The web interface in NotifyLink 3.0 does not properly restrict access to functions that have been disabled in the GUI, which allows remote authenticated users to bypass intended restrictions via a direct request to certain URLs.    4.6  Medium  2017-01-03  2008-09-05  View

Page 35 of 17672, showing 5 records out of 88360 total, starting on record 171, ending on 175

Actions