NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59202  CVE-2006-0464  Multiple SQL injection vulnerabilities in index.php in IdeoContent Manager allow remote attackers to execute arbitrary SQL commands via the (1) goto_id or (2) mid parameter.    7.5  High  2016-12-20  2008-09-05  View
60738  CVE-2006-2033  PHP remote file inclusion vulnerability in Core CoreNews 2.0.1 and earlier allows remote authenticated users to execute arbitrary commands via the show parameter. NOTE: this is a different vector than CVE-2006-1212, although it might be the same primary issue.    6.4  Medium  2016-12-20  2008-09-05  View
61506  CVE-2006-2821  Multiple cross-site scripting (XSS) vulnerabilities in DeltaScripts Pro Publish allow remote attackers to inject arbitrary web script or HTML via the (1) artid parameter in art.php and the (2) catname parameter in cat.php.    6.8  Medium  2016-12-20  2008-09-05  View
64578  CVE-2006-6017  WordPress before 2.0.5 does not properly store a profile containing a string representation of a serialized object, which allows remote authenticated users to cause a denial of service (application crash) via a string that represents a (1) malformed or (2) large serialized object, because the object triggers automatic unserialization for display.    Medium  2016-12-20  2008-09-05  View
64834  CVE-2006-6273  sp_index.php in Simple PHP Gallery 1.1 allows remote attackers to obtain sensitive information via an invalid dir parameter, which reveals the path in an error message.    7.5  High  2016-12-20  2008-09-05  View

Page 421 of 17672, showing 5 records out of 88360 total, starting on record 2101, ending on 2105

Actions