NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59325 | CVE-2006-0590 | MyTopix 1.2.3 allows remote attackers to obtain the installation path via an invalid hl parameter to index.php, which leads to path disclosure, possibly related to invalid SQL syntax. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
59581 | CVE-2006-0852 | Direct static code injection vulnerability in write.php in Admbook 1.2.2 and earlier allows remote attackers to execute arbitrary PHP code via the X-Forwarded-For HTTP header field, which is inserted into content-data.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
59837 | CVE-2006-1115 | nCipher HSM before 2.22.6, when generating a Diffie-Hellman public/private key pair without any specified DiscreteLogGroup parameters, chooses random parameters that could allow an attacker to crack the private key in significantly less time than a brute force attack. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
60093 | CVE-2006-1384 | Cross-site scripting (XSS) vulnerability in apwc_win_main.jsp in the web console in IBM Tivoli Business Systems Manager (TBSM) before 3.1.0.1 allows remote attackers to inject arbitrary web script or HTML via the skin parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
60349 | CVE-2006-1644 | login.php in Interact 2.1.1 generates different responses depending on whether or not a username is valid, which allows remote attackers to determine valid usernames. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 1109 of 17672, showing 5 records out of 88360 total, starting on record 5541, ending on 5545