NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
62350  CVE-2006-3682  awstats.pl in AWStats 6.5 build 1.857 and earlier allows remote attackers to obtain the installation path via the (1) year, (2) pluginmode or (3) month parameters.    Medium  2016-12-20  2011-03-07  View
62606  CVE-2006-3948  Cross-site scripting (XSS) vulnerability in modules.php in PHP-Nuke INP allows remote attackers to inject arbitrary web script or HTML via the query parameter.    4.3  Medium  2016-12-20  2008-09-05  View
62862  CVE-2006-4221  Stack-based buffer overflow in the IBM Access Support eGatherer ActiveX control before 3.20.0284.0 allows remote attackers to execute arbitrary code via a long filename parameter to the RunEgatherer method.    9.3  High  2016-12-20  2011-03-07  View
63118  CVE-2006-4483  The cURL extension files (1) ext/curl/interface.c and (2) ext/curl/streams.c in PHP before 5.1.5 permit the CURLOPT_FOLLOWLOCATION option when open_basedir or safe_mode is enabled, which allows attackers to perform unauthorized actions, possibly related to the realpath cache.    9.3  High  2016-12-20  2011-03-07  View
63374  CVE-2006-4750  PHP remote file inclusion vulnerability in openi-admin/base/fileloader.php in OPENi-CMS 1.0.1, and possibly earlier, allows remote attackers to execute arbitrary PHP code via a URL in the config[openi_dir] parameter.    5.1  Medium  2016-12-20  2011-03-07  View

Page 828 of 17672, showing 5 records out of 88360 total, starting on record 4136, ending on 4140

Actions