NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
61247  CVE-2006-2552  Jemscripts DownloadControl 1.0 allows remote attackers to obtain sensitive information via an invalid dcid parameter to dc.php, which leaks the pathname in an error message. NOTE: this was originally claimed to be SQL injection, but it is probably resultant from another issue in functions.php.    Medium  2016-12-20  2011-03-07  View
61503  CVE-2006-2818  PHP remote file inclusion vulnerability in common-menu.php in Cameron McKay Informium 0.12.0 allows remote attackers to execute arbitrary PHP code via a URL in the CONF[local_path] parameter.    7.5  High  2016-12-20  2011-03-07  View
61759  CVE-2006-3076  PHP remote file inclusion vulnerability in software_upload/public_includes/pub_templates/vphptree/template.php in PhpBlueDragon CMS 2.9.1 allows remote attackers to execute arbitrary PHP code via a URL in the vsDragonRootPath parameter.    6.4  Medium  2016-12-20  2008-09-05  View
62015  CVE-2006-3337  Cross-site scripting (XSS) vulnerability in frontend/x/files/select.html in cPanel 10.8.2-CURRENT 118 and earlier allows remote attackers to inject arbitrary web script or HTML via the file parameter.    2.6  Low  2016-12-20  2011-03-07  View
62271  CVE-2006-3597  passwd before 1:4.0.13 on Ubuntu 6.06 LTS leaves the root password blank instead of locking it when the administrator selects the "Go Back" option after the final "Installation complete" message and uses the main menu, which causes the password to be zeroed out in the installer"s memory.    7.2  High  2016-12-20  2008-09-05  View

Page 361 of 17672, showing 5 records out of 88360 total, starting on record 1801, ending on 1805

Actions