NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61463 | CVE-2006-2778 | The crypto.signText function in Mozilla Firefox and Thunderbird before 1.5.0.4 allows remote attackers to execute arbitrary code via certain optional Certificate Authority name arguments, which causes an invalid array index and triggers a buffer overflow. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61719 | CVE-2006-3035 | Multiple cross-site scripting (XSS) vulnerabilities in addwords.php in MyScrapbook 3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) name and (2) comment parameters. NOTE: the provenance of this information is unknown; the details are obtained from third party information. | 2 | 5.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61975 | CVE-2006-3296 | SQL injection vulnerability in view.php in Open Guestbook 0.5 allows remote attackers to execute arbitrary SQL commands via the offset parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62231 | CVE-2006-3557 | MT Orumcek Toplist 2.2 stores DB/orumcektoplist.mdb under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
62487 | CVE-2006-3819 | Eval injection vulnerability in the configure script in TWiki 4.0.0 through 4.0.4 allows remote attackers to execute arbitrary Perl code via an HTTP POST request containing a parameter name starting with "TYPEOF". | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 131 of 17672, showing 5 records out of 88360 total, starting on record 651, ending on 655