NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64490 | CVE-2006-5915 | Multiple cross-site scripting (XSS) vulnerabilities in ls.php in SAMEDIA LandShop allow remote attackers to inject arbitrary web script or HTML via the (1) start, (2) CAT_ID, (3) keyword, (4) search_area, (5) search_type, (6) infield, or (7) search_order parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
64746 | CVE-2006-6185 | Directory traversal vulnerability in script.php in Wabbit PHP Gallery 0.9 allows remote attackers to read arbitrary files via a .. (dot dot) in the dir parameter to index.php. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
65002 | CVE-2006-6457 | tiki-wiki_rss.php in Tikiwiki 1.9.5, 1.9.2, and possibly other versions allows remote attackers to obtain sensitive information (MySQL username and password) via an invalid (large or negative) ver parameter, which leaks the information in an error message. | 2 | 5 | Medium | 2016-12-20 | 2012-10-24 | View | |
65258 | CVE-2006-6714 | Multiple memory leaks in Hitachi Directory Server 2 P-2444-A124 before 02-11-/K on Windows, and P-1B44-A121 before 02-10-/V on HP-UX, allow remote attackers to cause a denial of service (memory consumption) via invalid LDAP requests. | 2 | 7.8 | High | 2016-12-20 | 2011-03-07 | View | |
65514 | CVE-2006-6971 | Mozilla Firefox 2.0, possibly only when running on Windows, allows remote attackers to bypass the Phishing Protection mechanism by representing an IP address in (1) dotted-hex, (2) dotted-octal, (3) single decimal integer, (4) single hex integer, or (5) single octal integer format, which is not captured by the blacklist filter. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 1379 of 17672, showing 5 records out of 88360 total, starting on record 6891, ending on 6895