NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60581 | CVE-2006-1876 | Unspecified vulnerability in Oracle Database Server 9.2.0.7 and 10.1.0.4 has unknown impact and attack vectors in the Oracle Spatial component, aka Vuln# DB12. NOTE: details are unavailable from Oracle, but as of 20060421, they have not publicly disputed a claim by a reliable independent researcher that states that the problem is SQL injection in the (1) GEN_RID_RANGE_BY_AREA and (2) GEN_RID_RANGE functions in the MDSYS.SDO_PRIDX package. | 2 | 9 | High | 2016-12-20 | 2012-10-22 | View | |
60837 | CVE-2006-2132 | SQL injection vulnerability in detail.asp in DUclassified allows remote attackers to execute arbitrary SQL commands via the iPro parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
61093 | CVE-2006-2394 | Cross-site scripting (XSS) vulnerability in chat.php in PHP Live Helper allows remote attackers to inject arbitrary web script or HTML via the PHPSESSID parameter. | 2 | 5.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
61349 | CVE-2006-2664 | Cross-site scripting (XSS) vulnerability in iFdate 1.2 allows remote attackers to inject arbitrary web script or HTML via the (1) username, (2) password fields, or certain other input text boxes. | 2 | 5.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61605 | CVE-2006-2921 | PHP remote file inclusion vulnerability in cmpro_header.inc.php in Clan Manager Pro (CMPRO) 1.1 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the (1) cm_ext_server and (2) sitepath parameters. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 967 of 17672, showing 5 records out of 88360 total, starting on record 4831, ending on 4835