NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65223  CVE-2006-6679  Pedro Lineu Orso chetcpasswd before 2.4 relies on the X-Forwarded-For HTTP header when verifying a client"s status on an IP address ACL, which allows remote attackers to gain unauthorized access by spoofing this header.    7.5  High  2016-12-20  2016-11-18  View
65479  CVE-2006-6936  Cross-site scripting (XSS) vulnerability in Xtreme ASP Photo Gallery allows remote attackers to inject arbitrary HTML or web script via (1) the catname parameter to displaypic.asp or (2) the search field. NOTE: vector 1 likely overlaps CVE-2006-3032.    6.8  Medium  2016-12-20  2008-09-05  View
65736  CVE-2006-7193  ** DISPUTED ** PHP remote file inclusion vulnerability in unit_test/test_cases.php in Smarty 2.6.1 allows remote attackers to execute arbitrary PHP code via a URL in the SMARTY_DIR parameter. NOTE: this issue is disputed by CVE and a third party because SMARTY_DIR is a constant.    7.5  High  2016-12-20  2008-11-15  View
70856  CVE-2004-0409  Stack-based buffer overflow in the Socks-5 proxy code for XChat 1.8.0 to 2.0.8, with socks5 traversal enabled, allows remote attackers to execute arbitrary code.    7.5  High  2016-12-20  2016-12-07  View
58824  CVE-2006-0084  Cross-site scripting vulnerability in index.php in raSMP 2.0.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the $_SERVER[HTTP_USER_AGENT] variable (User-Agent header).    Medium  2016-12-20  2011-03-07  View

Page 1172 of 17672, showing 5 records out of 88360 total, starting on record 5856, ending on 5860

Actions