NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
58897  CVE-2006-0157  settings.php in Reamday Enterprises Magic News Plus 1.0.3 allows remote attackers to change the administrator password via a change action that specifies identical values for the passwd and admin_password parameters, then declares the new password string in the new_passwd and confirm_passwd parameters.    Medium  2016-12-20  2008-09-05  View
59153  CVE-2006-0415  Cross-site scripting (XSS) vulnerability in index.php in SleeperChat 0.3f and earlier allows remote attackers to inject arbitrary web script or HTML via the pseudo parameter.    4.3  Medium  2016-12-20  2008-09-05  View
59409  CVE-2006-0678  PostgreSQL 7.3.x before 7.3.14, 7.4.x before 7.4.12, 8.0.x before 8.0.7, and 8.1.x before 8.1.3, when compiled with Asserts enabled, allows local users to cause a denial of service (server crash) via a crafted SET SESSION AUTHORIZATION command, a different vulnerability than CVE-2006-0553.    1.5  Low  2016-12-20  2011-03-07  View
59665  CVE-2006-0938  Cross-site scripting (XSS) vulnerability in eZ publish 3.7.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the RefererURL parameter.    4.3  Medium  2016-12-20  2015-07-27  View
59921  CVE-2006-1207  PHP Upload Center stores password hashes under the web root with insufficient access control, which allows remote attackers to download each password hash via a direct request for the upload/users/[USERNAME] file.    Medium  2016-12-20  2008-09-05  View

Page 1074 of 17672, showing 5 records out of 88360 total, starting on record 5366, ending on 5370

Actions