NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60403 | CVE-2006-1698 | Cross-site scripting (XSS) vulnerability in Matt Wright Guestbook 2.3.1 allows remote attackers to execute arbitrary web script or HTML via the (1) url, (2) city, (3) state, or (4) country parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information, although it is likely that they are the result of post-disclosure analysis. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
60659 | CVE-2006-1954 | SQL injection vulnerability in authent.php4 in Nicolas Fischer (aka NFec) RechnungsZentrale V2 1.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the User field. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
60915 | CVE-2006-2212 | Buffer overflow in KarjaSoft Sami FTP Server 2.0.2 and earlier allows remote attackers to execute arbitrary code via a long (1) USER or (2) PASS command. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
61171 | CVE-2006-2476 | Bitrix Site Manager 4.1.x stores updater.log under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61427 | CVE-2006-2742 | SQL injection vulnerability in Drupal 4.6.x before 4.6.7 and 4.7.0 allows remote attackers to execute arbitrary SQL commands via the (1) count and (2) from variables to (a) database.mysql.inc, (b) database.pgsql.inc, and (c) database.mysqli.inc. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 1428 of 17672, showing 5 records out of 88360 total, starting on record 7136, ending on 7140