NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60490 | CVE-2006-1785 | Adobe Document Server for Reader Extensions 6.0 allows remote authenticated users to inject arbitrary web script via a leading (1) ftp or (2) http URI in the ReaderURL variable in the "Update Download Site" section of ads-readerext. NOTE: it is not clear whether the vendor advisory addresses this issue. In addition, since the issue requires administrative privileges to exploit, it is not clear whether this crosses security boundaries. | 2 | 2.1 | Low | 2016-12-20 | 2011-03-07 | View | |
60746 | CVE-2006-2041 | PhpWebGallery before 1.6.0RC1 allows remote attackers to obtain arbitrary pictures via a request to picture.php without specifying the cat parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61002 | CVE-2006-2300 | Multiple SQL injection vulnerabilities in EImagePro allow remote attackers to execute arbitrary SQL commands via the (1) CatID parameter to subList.asp, (2) SubjectID parameter to imageList.asp, or (3) Pic parameter to view.asp. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
61258 | CVE-2006-2563 | The cURL library (libcurl) in PHP 4.4.2 and 5.1.4 allows attackers to bypass safe mode and read files via a file:// request containing null characters. | 2 | 2.1 | Low | 2016-12-20 | 2011-03-07 | View | |
61514 | CVE-2006-2829 | Buffer overflow in Hawk Monitoring Agent (HMA) for TIBCO Hawk before 4.6.1 and TIBCO Runtime Agent (TRA) before 5.4 allows authenticated users to execute arbitrary code via the configuration for tibhawkhma. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 425 of 17672, showing 5 records out of 88360 total, starting on record 2121, ending on 2125