NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
58641 | CVE-2007-6646 | Multiple cross-site scripting (XSS) vulnerabilities in LiveCart 1.0.1, and possibly other versions before 1.1.0, allow remote attackers to inject arbitrary web script or HTML via (1) the return parameter to user/remindPassword, (2) the q parameter to the category script, (3) the return parameter to the order script, or (4) the email parameter to user/remindComplete. | 2 | 4.3 | Medium | 2017-01-07 | 2008-11-15 | View | |
58897 | CVE-2006-0157 | settings.php in Reamday Enterprises Magic News Plus 1.0.3 allows remote attackers to change the administrator password via a change action that specifies identical values for the passwd and admin_password parameters, then declares the new password string in the new_passwd and confirm_passwd parameters. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
59153 | CVE-2006-0415 | Cross-site scripting (XSS) vulnerability in index.php in SleeperChat 0.3f and earlier allows remote attackers to inject arbitrary web script or HTML via the pseudo parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
59409 | CVE-2006-0678 | PostgreSQL 7.3.x before 7.3.14, 7.4.x before 7.4.12, 8.0.x before 8.0.7, and 8.1.x before 8.1.3, when compiled with Asserts enabled, allows local users to cause a denial of service (server crash) via a crafted SET SESSION AUTHORIZATION command, a different vulnerability than CVE-2006-0553. | 2 | 1.5 | Low | 2016-12-20 | 2011-03-07 | View | |
59665 | CVE-2006-0938 | Cross-site scripting (XSS) vulnerability in eZ publish 3.7.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the RefererURL parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2015-07-27 | View |
Page 1219 of 17672, showing 5 records out of 88360 total, starting on record 6091, ending on 6095