NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
58405  CVE-2007-6410  Gadu-Gadu does not properly perform protocol handling, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks and add arbitrary user accounts or cause a denial of service as administrators via an unspecified "crafted link," possibly related to the gg protocol.    4.3  Medium  2017-01-07  2008-09-05  View
59941  CVE-2006-1227  Drupal 4.5.x before 4.5.8 and 4.6.x before 4.5.8, when menu.module is used to create a menu item, does not implement access control for the page that is referenced, which might allow remote attackers to access administrator pages.    4.6  Medium  2016-12-20  2008-09-05  View
60197  CVE-2006-1488  ActiveCampaign SupportTrio 2.5 allows remote attackers to obtain the full path of the server via invalid (1) article or (2) print parameters in a kb action to index.php, or (3) an invalid category parameter to modules/KB/pdf.php, which leaks the path in an error message.    Medium  2016-12-20  2011-03-07  View
61221  CVE-2006-2526  PHP remote file inclusion vulnerability in index.php in PHP Easy Galerie 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the includepath parameter.    6.4  Medium  2016-12-20  2011-03-07  View
61733  CVE-2006-3049  Multiple cross-site scripting (XSS) vulnerabilities in booking3.php in Mole Group Ticket Booking Script allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) address1, (3) address2, (4) county, (5) postcode, (6) email, (7) phone, or (8) mobile parameters to booking2.php.    4.3  Medium  2016-12-20  2011-03-07  View

Page 1377 of 17672, showing 5 records out of 88360 total, starting on record 6881, ending on 6885

Actions