NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60705 | CVE-2006-2000 | Cross-site scripting (XSS) vulnerability in /lms/a2z.jsp in logMethods 0.9 allows remote attackers to inject arbitrary web script or HTML via the kwd parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
61985 | CVE-2006-3306 | Cross-site scripting (XSS) vulnerability in the preparestring function in lib/common.php in Project EROS bbsengine before 20060501-0142-jam, and possibly earlier versions dating back to 2006-02-23, might allow remote attackers to inject arbitrary web script or HTML via unknown vectors. | 2 | 4.3 | Medium | 2016-12-20 | 2016-06-15 | View | |
62241 | CVE-2006-3567 | Cross-site scripting (XSS) vulnerability in the web administration interface logging feature in Juniper Networks (Redline) DX 5.1.x, and possibly earlier versions, allows remote attackers to inject arbitrary web script or HTML via the username login field. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
62497 | CVE-2006-3829 | Cross-site request forgery (CSRF) vulnerability in bmc/admin.php in Kailash Nadh boastMachine (formerly bMachine) 3.1 and earlier allows remote attackers to perform unauthorized actions as an administrator and delete arbitrary user accounts via a delete_user action. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
64289 | CVE-2006-5714 | Easy File Sharing (EFS) Web Server 4.0, when running on an NTFS file system, allows remote attackers to read arbitrary files under the web root by appending "::$DATA" to the end of a HTTP GET request, which accesses the alternate data stream. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 1229 of 17672, showing 5 records out of 88360 total, starting on record 6141, ending on 6145