NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64535  CVE-2006-5960  Multiple cross-site scripting (XSS) vulnerabilities in account_login.asp in A+ Store E-Commerce allow remote attackers to inject arbitrary web script or HTML via the (1) username (txtUserName) and (2) password (txtPassword) parameters. NOTE: portions of these details are obtained from third party information.    6.8  Medium  2016-12-20  2008-09-05  View
64791  CVE-2006-6230  SQL injection vulnerability in vuBB 0.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the user parameter in a register action to index.php, a different vulnerability than CVE-2006-0962.    7.5  High  2016-12-20  2011-03-07  View
65047  CVE-2006-6502  Use-after-free vulnerability in the LiveConnect bridge code for Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to cause a denial of service (crash) via unknown vectors.    7.1  High  2016-12-20  2011-03-07  View
65303  CVE-2006-6759  A certain ActiveX control in rpau3260.dll in RealNetworks RealPlayer 10.5 allows remote attackers to cause a denial of service (Internet Explorer crash) by invoking the RealPlayer.Initialize method with certain arguments.    Medium  2016-12-20  2011-03-07  View
24  CVE-2008-0032  Apple QuickTime before 7.4 allows remote attackers to execute arbitrary code via a movie file containing a Macintosh Resource record with a modified length value in the resource header, which triggers heap corruption.    5.8  Medium  2017-01-03  2011-03-07  View

Page 1438 of 17672, showing 5 records out of 88360 total, starting on record 7186, ending on 7190

Actions