NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 59233 | CVE-2006-0495 | Cross-site scripting (XSS) vulnerability in the Add Thread to Favorites feature in usercp2.php in MyBB (aka MyBulletinBoard) 1.02 allows remote attackers to inject arbitrary web script or HTML via an HTTP Referer header ($url variable). | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 59232 | CVE-2006-0494 | Directory traversal vulnerability in MyBB (aka MyBulletinBoard) 1.02 allows local users with MyBB administrative privileges to include and possibly execute arbitrary local files via directory traversal sequences and a nul (%00) character in the plugin parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 59231 | CVE-2006-0493 | Cross-site scripting (XSS) vulnerability in MG2 (formerly known as Minigal) 0.5.1 allows remote attackers to inject arbitrary web script or HTML via the Name field in a comment associated with a picture. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 59230 | CVE-2006-0492 | Multiple SQL injection vulnerabilities in Calendarix allow remote attackers to execute arbitrary SQL commands via (1) the catview parameter in cal_functions.inc.php and (2) the login parameter in cal_login.php. NOTE: the catview vector might overlap CVE-2005-1865. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 59229 | CVE-2006-0491 | SQL injection vulnerability in SZUserMgnt.class.php in SZUserMgnt 1.4 allows remote attackers to execute arbitrary SQL commands via the username parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 14456 of 17672, showing 5 records out of 88360 total, starting on record 72276, ending on 72280