NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 62895 | CVE-2006-4256 | index.php in Horde Application Framework before 3.1.2 allows remote attackers to include web pages from other sites, which could be useful for phishing attacks, via a URL in the url parameter, aka "cross-site referencing." NOTE: some sources have referred to this issue as XSS, but it is different than classic XSS. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 63151 | CVE-2006-4518 | Qbik WinGate 6.1.4 and earlier allows remote attackers to cause a denial of service (CPU consumption) via a DNS request with a self-referencing compressed name pointer, which triggers an infinite loop. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 63407 | CVE-2006-4783 | SQL injection vulnerability in squads.php in WebSPELL 4.01.01 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary SQL commands via the squadID parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 63663 | CVE-2006-5057 | Multiple cross-site scripting (XSS) vulnerabilities in Ktools.net PhotoStore allow remote attackers to inject arbitrary web script or HTML via the (1) gid parameter in details.php, or the (2) photogid parameter in view_photog.php. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 64431 | CVE-2006-5856 | Stack-based buffer overflow in the Adobe Download Manager before 2.2 allows remote attackers to execute arbitrary code via a long section name in the dm.ini file, which is populated via an AOM file. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 14834 of 17672, showing 5 records out of 88360 total, starting on record 74166, ending on 74170