NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62801 | CVE-2006-4154 | Format string vulnerability in the mod_tcl module 1.0 for Apache 2.x allows context-dependent attackers to execute arbitrary code via format string specifiers that are not properly handled in a set_var function call in (1) tcl_cmds.c and (2) tcl_core.c. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
63057 | CVE-2006-4422 | ** DISPUTED ** PHP remote file inclusion vulnerability in includes/phpdig/libs/search_function.php in Jetbox CMS 2.1 allows remote attackers to execute arbitrary PHP code via a URL in the relative_script_path parameter, a different vector than CVE-2006-2270. NOTE: this issue has been disputed, and as of 20060830, CVE analysis concurs with the dispute. In addition, it is likely that the vulnerability is actually in a third party module, phpDig 1.8.8. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63313 | CVE-2006-4680 | The Remote UI in Canon imageRUNNER includes usernames and passwords when exporting an address book, which allows context-dependent attackers to obtain sensitive information. | 2 | 4 | Medium | 2016-12-20 | 2011-03-07 | View | |
63569 | CVE-2006-4961 | SQL injection vulnerability in the GetModuleConfig function in public_includes/pub_kernel/pbd_modules.php in Php Blue Dragon 2.9.1 and earlier allows remote attackers to execute arbitrary SQL commands via the m parameter to index.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63825 | CVE-2006-5219 | SQL injection vulnerability in blog/index.php in the blog module in Moodle 1.6.2 allows remote attackers to execute arbitrary SQL commands via a double-encoded tag parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2016-10-17 | View |
Page 468 of 17672, showing 5 records out of 88360 total, starting on record 2336, ending on 2340