NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60845 | CVE-2006-2140 | Multiple cross-site scripting (XSS) vulnerabilities in OrbitHYIP 2.0 and earlier allow remote attackers to inject arbitrary web script via the (1) referral parameter to signup.php or (2) id parameter to members.php. | 2 | 5.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61101 | CVE-2006-2402 | Buffer overflow in the changeRegistration function in servernet.cpp for Outgun 1.0.3 bot 2 and earlier allows remote attackers to change the registration information of other players via a long string. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61357 | CVE-2006-2672 | Multiple cross-site scripting (XSS) vulnerabilities in Realty Pro One allow remote attackers to inject arbitrary web script or HTML via the (1) listingid parameter to (a) images.php, (b) index_other.php, or (c) request_info.php; (2) propertyid parameter to (d) searchlookup.php, (3) id parameter to (e) images.php, or (4) agentid parameter to (f) request_info.php. NOTE: some of these issues might be resultant from SQL injection. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61613 | CVE-2006-2929 | PHP remote file inclusion vulnerability in contrib/forms/evaluation/C_FormEvaluation.class.php in OpenEMR 2.8.1 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[fileroot] parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61869 | CVE-2006-3190 | SQL injection vulnerability in administration/includes/login/auth.php in HotPlug CMS 1.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username and (2) password parameters. | 2 | 7.5 | High | 2016-12-20 | 2016-10-17 | View |
Page 1014 of 17672, showing 5 records out of 88360 total, starting on record 5066, ending on 5070