NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
58897 | CVE-2006-0157 | settings.php in Reamday Enterprises Magic News Plus 1.0.3 allows remote attackers to change the administrator password via a change action that specifies identical values for the passwd and admin_password parameters, then declares the new password string in the new_passwd and confirm_passwd parameters. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
59153 | CVE-2006-0415 | Cross-site scripting (XSS) vulnerability in index.php in SleeperChat 0.3f and earlier allows remote attackers to inject arbitrary web script or HTML via the pseudo parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
59409 | CVE-2006-0678 | PostgreSQL 7.3.x before 7.3.14, 7.4.x before 7.4.12, 8.0.x before 8.0.7, and 8.1.x before 8.1.3, when compiled with Asserts enabled, allows local users to cause a denial of service (server crash) via a crafted SET SESSION AUTHORIZATION command, a different vulnerability than CVE-2006-0553. | 2 | 1.5 | Low | 2016-12-20 | 2011-03-07 | View | |
59665 | CVE-2006-0938 | Cross-site scripting (XSS) vulnerability in eZ publish 3.7.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the RefererURL parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2015-07-27 | View | |
59921 | CVE-2006-1207 | PHP Upload Center stores password hashes under the web root with insufficient access control, which allows remote attackers to download each password hash via a direct request for the upload/users/[USERNAME] file. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 1074 of 17672, showing 5 records out of 88360 total, starting on record 5366, ending on 5370