NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64582  CVE-2006-6021  SQL injection vulnerability in the login component in BestWebApp Dating Site allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) passwd parameters.    7.5  High  2016-12-20  2008-09-05  View
64838  CVE-2006-6277  Directory traversal vulnerability in admin/FileServer.php in ContentServ 4.x allows remote attackers to read arbitrary files via a .. (dot dot) in the src parameter, a different vector than CVE-2005-3086.    Medium  2016-12-20  2011-03-07  View
65094  CVE-2006-6549  ** DISPUTED ** PHP remote file inclusion vulnerability in upload.php in Rad Upload 3.02 allows remote attackers to execute arbitrary PHP code via a URL in the save_path parameter. NOTE: CVE disputes this vulnerability because save_path is originally defined as "" before use, and the nearby instructions say "SET THE SAVE PATH by editing the line below."    7.5  High  2016-12-20  2008-09-05  View
65350  CVE-2006-6807  SQL injection vulnerability in list.asp in Softwebs Nepal (aka Ananda Raj Pandey) Ananda Real Estate 3.4 and earlier allows remote attackers to execute arbitrary SQL commands via the agent parameter.    7.5  High  2016-12-20  2011-03-07  View
65607  CVE-2006-7064  Cross-site scripting (XSS) vulnerability in forum/admin.php for Invision Power Board (IPB) 2.1.6 and earlier allows remote attackers to inject arbitrary web script or HTML as the administrator via the phpinfo parameter.    9.3  High  2016-12-20  2008-09-05  View

Page 405 of 17672, showing 5 records out of 88360 total, starting on record 2021, ending on 2025

Actions