NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
60254  CVE-2006-1546  Apache Software Foundation (ASF) Struts before 1.2.9 allows remote attackers to bypass validation via a request with a "org.apache.struts.taglib.html.Constants.CANCEL" parameter, which causes the action to be canceled but would not be detected from applications that do not use the isCancelled check.    7.5  High  2016-12-20  2011-03-07  View
60510  CVE-2006-1805  SQL injection vulnerability in member.php in PowerClan 1.14 allows remote attackers to execute arbitrary SQL commands via the memberid parameter.    7.5  High  2016-12-20  2011-03-07  View
60766  CVE-2006-2061  SQL injection vulnerability in lib/func_taskmanager.php in Invision Power Board (IPB) 2.1.x and 2.0.x before 20060425 allows remote attackers to execute arbitrary SQL commands via the ck parameter, which can inject at most 32 characters.    Medium  2016-12-20  2011-03-07  View
61022  CVE-2006-2320  Multiple SQL injection vulnerabilities in Ideal Science Ideal BB 1.5.4a and earlier allow remote attackers to execute arbitrary SQL commands via multiple unspecified vectors related to stored procedure calls. NOTE: due to lack of details from the researcher, it is not clear whether this overlaps CVE-2004-2209.    7.5  High  2016-12-20  2011-03-07  View
61278  CVE-2006-2583  PHP remote file inclusion vulnerability in nucleus/libs/PLUGINADMIN.php in Nucleus 3.22 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[DIR_LIBS] parameter.    5.1  Medium  2016-12-20  2011-03-07  View

Page 541 of 17672, showing 5 records out of 88360 total, starting on record 2701, ending on 2705

Actions