NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60948 | CVE-2006-2245 | PHP remote file inclusion vulnerability in auctionauction_common.php in Auction mod 1.3m for phpBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61204 | CVE-2006-2509 | SQL injection vulnerability in login.php in YourFreeWorld.com Short Url & Url Tracker Script allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
61460 | CVE-2006-2775 | Mozilla Firefox and Thunderbird before 1.5.0.4 associates XUL attributes with the wrong URL under certain unspecified circumstances, which might allow remote attackers to bypass restrictions by causing a persisted string to be associated with the wrong URL. | 2 | 7.5 | High | 2016-12-20 | 2011-09-20 | View | |
61716 | CVE-2006-3032 | Multiple cross-site scripting (XSS) vulnerabilities in Xtreme ASP Photo Gallery 1.05 and earlier, and possibly 2.0 (trial), allow remote attackers to inject arbitrary web script or HTML via the (1) catname and (2) total parameters in (a) displaypic.asp, and the (3) catname parameter in (b) displaythumbs.asp. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
61972 | CVE-2006-3293 | parse_notice (TiCPU) in EnergyMech (emech) before 3.0.2 allows remote attackers to cause a denial of service (crash) via empty IRC CTCP NOTICE messages. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 1423 of 17672, showing 5 records out of 88360 total, starting on record 7111, ending on 7115