NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63407  CVE-2006-4783  SQL injection vulnerability in squads.php in WebSPELL 4.01.01 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary SQL commands via the squadID parameter.    5.1  Medium  2016-12-20  2011-03-07  View
63663  CVE-2006-5057  Multiple cross-site scripting (XSS) vulnerabilities in Ktools.net PhotoStore allow remote attackers to inject arbitrary web script or HTML via the (1) gid parameter in details.php, or the (2) photogid parameter in view_photog.php.    5.1  Medium  2016-12-20  2011-03-07  View
63919  CVE-2006-5316  registroTL stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for /usuarios.dat.    7.8  High  2016-12-20  2011-03-07  View
64175  CVE-2006-5578  Microsoft Internet Explorer 6 and earlier allows remote attackers to read Temporary Internet Files (TIF) and obtain sensitive information via unspecified vectors involving certain drag and drop operations, aka "TIF Folder Information Disclosure Vulnerability," and a different issue than CVE-2006-5577.    2.6  Low  2016-12-20  2011-03-07  View
64431  CVE-2006-5856  Stack-based buffer overflow in the Adobe Download Manager before 2.2 allows remote attackers to execute arbitrary code via a long section name in the dm.ini file, which is populated via an AOM file.    6.8  Medium  2016-12-20  2011-03-07  View

Page 1028 of 17672, showing 5 records out of 88360 total, starting on record 5136, ending on 5140

Actions