NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
58405 | CVE-2007-6410 | Gadu-Gadu does not properly perform protocol handling, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks and add arbitrary user accounts or cause a denial of service as administrators via an unspecified "crafted link," possibly related to the gg protocol. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
59941 | CVE-2006-1227 | Drupal 4.5.x before 4.5.8 and 4.6.x before 4.5.8, when menu.module is used to create a menu item, does not implement access control for the page that is referenced, which might allow remote attackers to access administrator pages. | 2 | 4.6 | Medium | 2016-12-20 | 2008-09-05 | View | |
60197 | CVE-2006-1488 | ActiveCampaign SupportTrio 2.5 allows remote attackers to obtain the full path of the server via invalid (1) article or (2) print parameters in a kb action to index.php, or (3) an invalid category parameter to modules/KB/pdf.php, which leaks the path in an error message. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61221 | CVE-2006-2526 | PHP remote file inclusion vulnerability in index.php in PHP Easy Galerie 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the includepath parameter. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
61733 | CVE-2006-3049 | Multiple cross-site scripting (XSS) vulnerabilities in booking3.php in Mole Group Ticket Booking Script allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) address1, (3) address2, (4) county, (5) postcode, (6) email, (7) phone, or (8) mobile parameters to booking2.php. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 1377 of 17672, showing 5 records out of 88360 total, starting on record 6881, ending on 6885