NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59576 | CVE-2006-0846 | Multiple cross-site scripting (XSS) vulnerabilities in Leif M. Wright"s Blog 3.5 allow remote attackers to inject arbitrary web script or HTML via the (1) Referer and (2) User-Agent HTTP headers, which are stored in a log file and not sanitized when the administrator views the "Log" page, possibly using the ViewCommentsLog function. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
59832 | CVE-2006-1110 | Cross-site scripting (XSS) vulnerability in Aztek Forum 4.0 allows remote attackers to inject arbitrary web script or HTML via the message body in a new message. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-10 | View | |
60088 | CVE-2006-1379 | Trend Micro PC-cillin Internet Security 2006 14.00.1485 and 14.10.0.1023, uses insecure DACLs for critical files, which allows local users to gain SYSTEM privileges by modifying executable programs such as (1) tmntsrv.exe and (2) tmproxy.exe. | 2 | 7.2 | High | 2016-12-20 | 2011-03-07 | View | |
60344 | CVE-2006-1639 | SQL injection vulnerability in index.php in wpBlog 0.4 allows remote attackers to execute arbitrary SQL commands via the postid parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2013-07-18 | View | |
60600 | CVE-2006-1895 | Direct static code injection vulnerability in includes/template.php in phpBB allows remote authenticated users with write access to execute arbitrary PHP code by modifying a template in a way that (1) bypasses a loose ".*" regular expression to match BEGIN and END statements in overall_header.tpl, or (2) is used in an eval statement by includes/bbcode.php for bbcode.tpl. | 2 | 6.5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 1079 of 17672, showing 5 records out of 88360 total, starting on record 5391, ending on 5395