NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63861 | CVE-2006-5255 | ** DISPUTED ** PHP remote file inclusion vulnerability in addnews.php in Greg Neustaetter gCards 1.13 allows remote attackers to execute arbitrary PHP code via a URL in the languagefile parameter. NOTE: another researcher has observed that languageFile is defined before use. CVE analysis as of 20061012 concurs with the dispute. | 2 | 7.5 | High | 2016-12-20 | 2016-10-17 | View | |
64117 | CVE-2006-5516 | Multiple cross-site scripting (XSS) vulnerabilities in actions/usersettings.php in WikiNi before 0.4.4 allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) email parameters to wakka.php. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
64373 | CVE-2006-5798 | SQL injection vulnerability in default.asp in Xenis.creator CMS allows remote attackers to execute arbitrary SQL commands via the contid parameter. | 2 | 7.5 | High | 2016-12-20 | 2016-10-17 | View | |
64629 | CVE-2006-6068 | Directory traversal vulnerability in the cached_album function in functions.php for mAlbum 0.3 and earlier allows remote attackers to list filenames of arbitrary images via a .. (dot dot) in the gal parameter to index.php. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
64885 | CVE-2006-6339 | SQL injection vulnerability in sites/index.php in deV!L`z Clanportal (DZCP) before 1.3.6.1 allows remote attackers to execute arbitrary SQL commands via the show element in a GET request. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 681 of 17672, showing 5 records out of 88360 total, starting on record 3401, ending on 3405