NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64535 | CVE-2006-5960 | Multiple cross-site scripting (XSS) vulnerabilities in account_login.asp in A+ Store E-Commerce allow remote attackers to inject arbitrary web script or HTML via the (1) username (txtUserName) and (2) password (txtPassword) parameters. NOTE: portions of these details are obtained from third party information. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
64791 | CVE-2006-6230 | SQL injection vulnerability in vuBB 0.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the user parameter in a register action to index.php, a different vulnerability than CVE-2006-0962. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65047 | CVE-2006-6502 | Use-after-free vulnerability in the LiveConnect bridge code for Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to cause a denial of service (crash) via unknown vectors. | 2 | 7.1 | High | 2016-12-20 | 2011-03-07 | View | |
65303 | CVE-2006-6759 | A certain ActiveX control in rpau3260.dll in RealNetworks RealPlayer 10.5 allows remote attackers to cause a denial of service (Internet Explorer crash) by invoking the RealPlayer.Initialize method with certain arguments. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
24 | CVE-2008-0032 | Apple QuickTime before 7.4 allows remote attackers to execute arbitrary code via a movie file containing a Macintosh Resource record with a modified length value in the resource header, which triggers heap corruption. | 2 | 5.8 | Medium | 2017-01-03 | 2011-03-07 | View |
Page 1438 of 17672, showing 5 records out of 88360 total, starting on record 7186, ending on 7190