NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63324 | CVE-2006-4692 | Argument injection vulnerability in the Windows Object Packager (packager.exe) in Microsoft Windows XP SP1 and SP2 and Server 2003 SP1 and earlier allows remote user-assisted attackers to execute arbitrary commands via a crafted file with a "/" (slash) character in the filename of the Command Line property, followed by a valid file extension, which causes the command before the slash to be executed, aka "Object Packager Dialogue Spoofing Vulnerability." | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
63580 | CVE-2006-4972 | Cross-site scripting (XSS) vulnerability in archive/index.php/forum-4.html in MyBB (aka MyBulletinBoard) allows remote attackers to inject arbitrary web script or HTML via the navbits[][name] parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
63836 | CVE-2006-5230 | PHP remote file inclusion vulnerability in forum.php in FreeForum 0.9.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the fpath parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
64092 | CVE-2006-5491 | Multiple SQL injection vulnerabilities in include/index.php in UltraCMS 0.9 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
64348 | CVE-2006-5773 | Directory traversal vulnerability in index.php in FreeWebshop 2.2.1 and earlier allows remote attackers to read arbitrary files and disclose the installation path via a .. (dot dot) in the action parameter. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 532 of 17672, showing 5 records out of 88360 total, starting on record 2656, ending on 2660