NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61914 | CVE-2006-3235 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in FineShop 3.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) promocja, (2) wysw, or (3) id_produc parameters. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
62170 | CVE-2006-3496 | AFP Server in Apple Mac OS X 10.3.9 and 10.4.7 allows remote attackers to cause denial of service (crash) via an invalid AFP request that triggers an unchecked error condition. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
62426 | CVE-2006-3758 | inc/init.php in Archive Mode (Light) in MyBB (aka MyBulletinBoard) 1.1.4 calls the extract function with EXTR_OVERWRITE on HTTP POST and GET variables, which allows remote attackers to overwrite arbitrary variables, as demonstrated via an SQL injection using the _SERVER[HTTP_CLIENT_IP] parameter in archive/index.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
62682 | CVE-2006-4024 | The FESTAHES_Load function in pce/hes.c in Festalon 0.5.0 through 0.5.5 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a negative LoadAddr value in a HES file, which is used as an offset in a memcpy operation and leads to a buffer underflow. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62938 | CVE-2006-4299 | Cross-site scripting (XSS) vulnerability in tiki-searchindex.php in TikiWiki 1.9.4 allows remote attackers to inject arbitrary web script or HTML via the highlight parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information. | 2 | 4.3 | Medium | 2016-12-20 | 2012-10-24 | View |
Page 1283 of 17672, showing 5 records out of 88360 total, starting on record 6411, ending on 6415