NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
62638  CVE-2006-3980  PHP remote file inclusion vulnerability in administrator/components/com_mgm/help.mgm.php in Mambo Gallery Manager (MGM) 0.95r2 and earlier for Mambo 4.5 allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.    6.8  Medium  2016-12-20  2011-03-07  View
62894  CVE-2006-4255  Cross-site scripting (XSS) vulnerability in horde/imp/search.php in Horde IMP H3 before 4.1.3 allows remote attackers to include arbitrary web script or HTML via multiple unspecified vectors related to folder names, as injected into the vfolder_label form field in the IMP search screen.    4.3  Medium  2016-12-20  2011-03-07  View
63406  CVE-2006-4782  src/index.php in WebSPELL 4.01.01 and earlier, when register_globals is enabled, allows remote attackers to bypass authentication and gain sensitive information stored in the database via a modified userID parameter in a write action to admin/database.php.    5.4  Medium  2016-12-20  2011-03-07  View
63662  CVE-2006-5056  Cross-site scripting (XSS) vulnerability in index.php in Opial Audio/Video Download Management 1.0 allows remote attackers to inject arbitrary web script or HTML via the destination parameter in the Login view.    5.1  Medium  2016-12-20  2011-03-07  View
64174  CVE-2006-5577  Microsoft Internet Explorer 6 and earlier allows remote attackers to obtain sensitive information via unspecified uses of the OBJECT HTML tag, which discloses the absolute path of the corresponding TIF folder, aka "TIF Folder Information Disclosure Vulnerability," and a different issue than CVE-2006-5578.    4.3  Medium  2016-12-20  2011-03-07  View

Page 14798 of 17672, showing 5 records out of 88360 total, starting on record 73986, ending on 73990

Actions