NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60528 | CVE-2006-1823 | Directory traversal vulnerability in FarsiNews 2.5.3 Pro and earlier allows remote attackers to obtain the installation path via ".." sequences in the archive parameter to index.php, which leaks the full pathname in an error message. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
60784 | CVE-2006-2079 | Cross-site scripting (XSS) vulnerability in portfolio.php in Verosky Media Instant Photo Gallery, possibly before 1.0.2, allows remote attackers to inject arbitrary web script or HTML via the cat_id parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
61040 | CVE-2006-2338 | PlaNet Concept plaNetStat 20050127 allows remote attackers to gain administrative privileges, and view and configure log files, via a direct request to the (1) admin.php or (2) settings.php page. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
61296 | CVE-2006-2601 | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-2589. Reason: This candidate is a duplicate of CVE-2006-2589. Notes: All CVE users should reference CVE-2006-2589 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage. | 1 | 2016-12-20 | 2008-09-10 | View | |||
61552 | CVE-2006-2867 | SQL injection vulnerability in editpost.php in CoolForum 0.8.3 beta and earlier allows remote attackers to execute arbitrary SQL commands via the post parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 648 of 17672, showing 5 records out of 88360 total, starting on record 3236, ending on 3240