NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61247 | CVE-2006-2552 | Jemscripts DownloadControl 1.0 allows remote attackers to obtain sensitive information via an invalid dcid parameter to dc.php, which leaks the pathname in an error message. NOTE: this was originally claimed to be SQL injection, but it is probably resultant from another issue in functions.php. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61503 | CVE-2006-2818 | PHP remote file inclusion vulnerability in common-menu.php in Cameron McKay Informium 0.12.0 allows remote attackers to execute arbitrary PHP code via a URL in the CONF[local_path] parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
61759 | CVE-2006-3076 | PHP remote file inclusion vulnerability in software_upload/public_includes/pub_templates/vphptree/template.php in PhpBlueDragon CMS 2.9.1 allows remote attackers to execute arbitrary PHP code via a URL in the vsDragonRootPath parameter. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
62015 | CVE-2006-3337 | Cross-site scripting (XSS) vulnerability in frontend/x/files/select.html in cPanel 10.8.2-CURRENT 118 and earlier allows remote attackers to inject arbitrary web script or HTML via the file parameter. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
62271 | CVE-2006-3597 | passwd before 1:4.0.13 on Ubuntu 6.06 LTS leaves the root password blank instead of locking it when the administrator selects the "Go Back" option after the final "Installation complete" message and uses the main menu, which causes the password to be zeroed out in the installer"s memory. | 2 | 7.2 | High | 2016-12-20 | 2008-09-05 | View |
Page 361 of 17672, showing 5 records out of 88360 total, starting on record 1801, ending on 1805