NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
60657  CVE-2006-1952  Directory traversal vulnerability in WinAgents TFTP Server for Windows 3.1 and earlier allows remote attackers to read arbitrary files via "..." (triple dot) sequences in a GET request.    Medium  2016-12-20  2011-03-07  View
60913  CVE-2006-2210  Cross-site scripting (XSS) vulnerability in index.php in 321soft PhP-Gallery 0.9 allows remote attackers to inject arbitrary web script or HTML via the path parameter. NOTE: this issue might be resultant from the directory traversal vulnerability.    5.8  Medium  2016-12-20  2011-03-07  View
61169  CVE-2006-2474  SQL injection vulnerability in lshop.cgi in Cosmoshop 8.11.106 and earlier allows remote attackers to execute arbitrary SQL commands via the artnum parameter.    7.5  High  2016-12-20  2008-09-05  View
61425  CVE-2006-2740  Multiple SQL injection vulnerabilities in Epicdesigns tinyBB 0.3 allow remote attackers to execute arbitrary SQL commands via the (1) q parameter in (a) forgot.php, and the (2) username and (3) password parameters in (b) login.php, and other unspecified vectors.    6.8  Medium  2016-12-20  2011-03-07  View
61681  CVE-2006-2997  Cross-site scripting (XSS) vulnerability in ZMS 2.9 and earlier, when register_globals is enabled, allows remote attackers to inject arbitrary web script or HTML via the raw parameter in the search field.    2.6  Low  2016-12-20  2016-08-23  View

Page 14621 of 17672, showing 5 records out of 88360 total, starting on record 73101, ending on 73105

Actions