NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59104 | CVE-2006-0365 | Cross-site scripting (XSS) vulnerability in XMB (aka extreme message board) allows remote attackers to inject arbitrary web script or HTML via JavaScript in the SRC attribute of an IMG element. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
59360 | CVE-2006-0629 | Unspecified vulnerability in AOL Instant Messenger (AIM) 5.9.3861 allows user-assisted remote attackers to cause a denial of service (client crash) and possibly execute arbitrary code by tricking the user into requesting Buddy Info about a long screen name, which might cause a buffer overflow. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
59616 | CVE-2006-0887 | Eval injection vulnerability in sessions.inc in PHP Base Library (PHPLib) before 7.4a, when index.php3 from the PHPLib distribution is available on the server, allows remote attackers to execute arbitrary PHP code by including a base64-encoded representation of the code in a cookie. NOTE: this description was significantly updated on 20060605 to reflect new details after an initial vague advisory. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
59872 | CVE-2006-1150 | Buffer overflow in Tenes Empanadas Graciela (TEG) 0.11.1, automatically appends an _ (underscore) to the end of duplicate nicknames, which allows remote attackers to cause a denial of service (application crash) by creating multiple users with long, identical nicknames, which triggers an off-by-one error. | 2 | 7.8 | High | 2016-12-20 | 2011-03-07 | View | |
60128 | CVE-2006-1419 | SQL injection vulnerability in the Calendar module in nuked-klan 1.7.5 and earlier allows remote attackers to execute arbitrary SQL commands via the m parameter to index.php. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 1316 of 17672, showing 5 records out of 88360 total, starting on record 6576, ending on 6580