NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62359 | CVE-2006-3691 | Multiple SQL injection vulnerabilities in VBZooM 1.11 and earlier allow remote attackers to execute arbitrary SQL commands via the UserID parameter to (1) ignore-pm.php, (2) sendmail.php, (3) reply.php or (4) sub-join.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
62615 | CVE-2006-3957 | PHP remote file inclusion vulnerability in payment.php in BosDev BosDates allows remote attackers to execute arbitrary PHP code via a URL in the insPath parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
62871 | CVE-2006-4230 | Multiple PHP remote file inclusion vulnerabilities in index.php in Lizge V.20 Web Portal allow remote attackers to execute arbitrary PHP code via a URL in the (1) lizge or (2) bade parameters. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63127 | CVE-2006-4492 | Unspecified vulnerability in Cybozu Office 6.5 Build 1.2 for Windows allows remote attackers to obtain sensitive information, including users and groups, via unspecified vectors. | 2 | 5 | Medium | 2016-12-20 | 2008-11-11 | View | |
63383 | CVE-2006-4759 | PunBB 1.2.12 does not properly handle an avatar directory pathname ending in %00, which allows remote authenticated administrative users to upload arbitrary files and execute code, as demonstrated by a query to admin_options.php with an avatars_dir parameter ending in %00. NOTE: this issue was originally disputed by the vendor, but the dispute was withdrawn on 20060926. | 2 | 3.6 | Low | 2016-12-20 | 2008-09-05 | View |
Page 883 of 17672, showing 5 records out of 88360 total, starting on record 4411, ending on 4415