NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62059 | CVE-2006-3381 | SturGeoN Upload allows remote attackers to execute arbitrary PHP code by uploading a file with a .php extension, then directly accessing the file. NOTE: It is uncertain whether this is a vulnerability or a feature of the product. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
62827 | CVE-2006-4186 | The iManager in eMBoxClient.jar in Novell eDirectory 8.7.3.8 writes passwords in plaintext to a log file, which allows local users to obtain passwords by reading the file. | 2 | 2.1 | Low | 2016-12-20 | 2008-09-05 | View | |
63595 | CVE-2006-4987 | Multiple PHP remote file inclusion vulnerabilities in Patrick Michaelis Wili-CMS allow remote attackers to execute arbitrary PHP code via a URL in the globals[content_dir] parameter in (1) example-view/templates/article.php, (2) example-view/templates/root.php, and (3) example-view/templates/dates_list.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63851 | CVE-2006-5245 | Eazy Cart allows remote attackers to bypass authentication and gain administrative access via a direct request for admin/home/index.php, and possibly other PHP scripts under admin/. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
65131 | CVE-2006-6587 | Cross-site scripting (XSS) vulnerability in the forum implementation in the ecommerce component in the Apache Open For Business Project (OFBiz) allows remote attackers to inject arbitrary web script or HTML by posting a message. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 700 of 17672, showing 5 records out of 88360 total, starting on record 3496, ending on 3500