NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 61348 | CVE-2006-2663 | Multiple cross-site scripting (XSS) vulnerabilities in iFlance 1.1 allow remote attackers to inject arbitrary web script or HTML via certain inputs to (1) acc_verify.php or (2) project.php. | 2 | 4.3 | Medium | 2016-12-20 | 2011-09-20 | View | |
| 63396 | CVE-2006-4772 | HotPlug CMS stores sensitive information under the web root with insufficient access control, which allows remote attackers to read the admin password and database credentials via a direct request for includes/class/config.inc. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 63908 | CVE-2006-5305 | PHP remote file inclusion vulnerability in lat2cyr.php in the lat2cyr 1.0.1 and earlier phpbb module allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 64164 | CVE-2006-5563 | Unspecified vulnerability in Yahoo! Messenger (Service 18) before 8.1.0.195 allows remote attackers to cause a denial of service (NULL dereference and application crash) via a crafted room name in a Conference Invite. NOTE: the provenance of this information is unknown; the details are obtained from third party information. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 64420 | CVE-2006-5845 | Unrestricted file upload vulnerability in index.php in Speedywiki 2.0 allows remote authenticated users to upload and execute arbitrary PHP code by setting the upload parameter to 1. | 2 | 6.5 | Medium | 2016-12-20 | 2016-11-18 | View |
Page 14453 of 17672, showing 5 records out of 88360 total, starting on record 72261, ending on 72265