NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62464 | CVE-2006-3796 | DeluxeBB 1.07 and earlier does not properly handle a username composed of a single space character, which allows remote authenticated users to login as the "space" user, post as the guest user, and block the ability of an administrator to ban the "space" user. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
62720 | CVE-2006-4063 | Multiple PHP remote file inclusion vulnerabilities in Csaba Godor SAPID Blog Beta 2 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) root_path parameter to (a) usr/extensions/get_blog_infochannel.inc.php, (b) usr/extensions/get_blog_meta_info.inc.php, or (c) usr/extensions/get_infochannel.inc.php; or the (2) GLOBALS[root_path] parameter to (d) usr/extensions/get_tree.inc.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62976 | CVE-2006-4337 | Buffer overflow in the make_table function in the LHZ component in gzip 1.3.5 allows context-dependent attackers to execute arbitrary code via a crafted decoding table in a GZIP archive. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63232 | CVE-2006-4599 | SQL injection vulnerability in aut_verifica.inc.php in Autentificator 2.01 allows remote attackers to execute arbitrary SQL commands via the user parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63488 | CVE-2006-4872 | SQL injection vulnerability in search.asp in Keyvan1 (aka Keyvan Janghorbani) ECardPro 2.0 allows remote attackers to execute arbitrary SQL commands via the keyword parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 66 of 17672, showing 5 records out of 88360 total, starting on record 326, ending on 330