NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59576  CVE-2006-0846  Multiple cross-site scripting (XSS) vulnerabilities in Leif M. Wright"s Blog 3.5 allow remote attackers to inject arbitrary web script or HTML via the (1) Referer and (2) User-Agent HTTP headers, which are stored in a log file and not sanitized when the administrator views the "Log" page, possibly using the ViewCommentsLog function.    4.3  Medium  2016-12-20  2008-09-05  View
59832  CVE-2006-1110  Cross-site scripting (XSS) vulnerability in Aztek Forum 4.0 allows remote attackers to inject arbitrary web script or HTML via the message body in a new message.    4.3  Medium  2016-12-20  2008-09-10  View
60088  CVE-2006-1379  Trend Micro PC-cillin Internet Security 2006 14.00.1485 and 14.10.0.1023, uses insecure DACLs for critical files, which allows local users to gain SYSTEM privileges by modifying executable programs such as (1) tmntsrv.exe and (2) tmproxy.exe.    7.2  High  2016-12-20  2011-03-07  View
60344  CVE-2006-1639  SQL injection vulnerability in index.php in wpBlog 0.4 allows remote attackers to execute arbitrary SQL commands via the postid parameter.    5.1  Medium  2016-12-20  2013-07-18  View
60600  CVE-2006-1895  Direct static code injection vulnerability in includes/template.php in phpBB allows remote authenticated users with write access to execute arbitrary PHP code by modifying a template in a way that (1) bypasses a loose ".*" regular expression to match BEGIN and END statements in overall_header.tpl, or (2) is used in an eval statement by includes/bbcode.php for bbcode.tpl.    6.5  Medium  2016-12-20  2008-09-05  View

Page 1079 of 17672, showing 5 records out of 88360 total, starting on record 5391, ending on 5395

Actions