NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64264 | CVE-2006-5670 | PHP remote file inclusion vulnerability in forgot_pass.php in Free Image Hosting 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the AD_BODY_TEMP parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
64520 | CVE-2006-5945 | Multiple SQL injection vulnerabilities in MGinternet Car Site Manager (CSM) allow remote attackers to execute arbitrary SQL commands via the (1) p parameter to (a) csm/asp/detail.asp, or the (2) l, (3) typ, or (4) loc parameter to (b) csm/asp/listings.asp. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
64776 | CVE-2006-6215 | Multiple SQL injection vulnerabilities in Wallpaper Website (Wallpaper Complete Website) 1.0.09 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) login or (2) password parameter to (a) process.php, or the (3) wallpaperid parameter to (b) dlwallpaper.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65032 | CVE-2006-6487 | Cross-site scripting (XSS) vulnerability in index.php in DT Guestbook (dt_guestbook) 1.0f, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the error[] parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
65288 | CVE-2006-6744 | phpProfiles before 2.1.1 does not have an index.php or other index file in the (1) image_data, (2) graphics/comm, or (3) users read/write directories, which might allow remote attackers to list directory contents or have other unknown impacts. | 2 | 2.1 | Low | 2016-12-20 | 2008-09-05 | View |
Page 539 of 17672, showing 5 records out of 88360 total, starting on record 2691, ending on 2695