NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
62359  CVE-2006-3691  Multiple SQL injection vulnerabilities in VBZooM 1.11 and earlier allow remote attackers to execute arbitrary SQL commands via the UserID parameter to (1) ignore-pm.php, (2) sendmail.php, (3) reply.php or (4) sub-join.php.    7.5  High  2016-12-20  2008-09-05  View
62615  CVE-2006-3957  PHP remote file inclusion vulnerability in payment.php in BosDev BosDates allows remote attackers to execute arbitrary PHP code via a URL in the insPath parameter.    7.5  High  2016-12-20  2008-09-05  View
62871  CVE-2006-4230  Multiple PHP remote file inclusion vulnerabilities in index.php in Lizge V.20 Web Portal allow remote attackers to execute arbitrary PHP code via a URL in the (1) lizge or (2) bade parameters.    7.5  High  2016-12-20  2008-09-05  View
63127  CVE-2006-4492  Unspecified vulnerability in Cybozu Office 6.5 Build 1.2 for Windows allows remote attackers to obtain sensitive information, including users and groups, via unspecified vectors.    Medium  2016-12-20  2008-11-11  View
63383  CVE-2006-4759  PunBB 1.2.12 does not properly handle an avatar directory pathname ending in %00, which allows remote authenticated administrative users to upload arbitrary files and execute code, as demonstrated by a query to admin_options.php with an avatars_dir parameter ending in %00. NOTE: this issue was originally disputed by the vendor, but the dispute was withdrawn on 20060926.    3.6  Low  2016-12-20  2008-09-05  View

Page 883 of 17672, showing 5 records out of 88360 total, starting on record 4411, ending on 4415

Actions