NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 58615 | CVE-2007-6620 | Directory traversal vulnerability in include/images.inc.php in Joovili 2.x allows remote attackers to read arbitrary files via a .. (dot dot) in the picture parameter. | 2 | 6.4 | Medium | 2017-01-07 | 2008-11-15 | View | |
| 58871 | CVE-2006-0131 | boastMachine 3.1 allows remote attackers to obtain sensitive information via a direct request to (1) footer.php and (2) side_menu.php, which reveals the path in an error message. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 59127 | CVE-2006-0389 | Cross-site scripting (XSS) vulnerability in Syndication (Safari RSS) in Mac OS X 10.4 through 10.4.5 allows remote attackers to execute arbitrary JavaScript via unspecified vectors involving RSS feeds. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
| 59383 | CVE-2006-0652 | WHMCompleteSolution (WHMCS) before 2.3 assigns incorrect permissions to "resellers", which allows remote authenticated users to perform privileged actions or obtain sensitive information. NOTE: this report is based on a vendor bug report that identified "incorrect permissions." However, the vendor did not label it a security issue, and there was no statement regarding whether or not the permissions were actually more permissive than intended. If in fact the permissions were more restrictive than intended, then this would be a functional problem but not a vulnerability. | 2 | 6.5 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 59639 | CVE-2006-0912 | Oreka before 0.5 allows remote attackers to cause a denial of service (application crash) via a "certain RTP sequence." | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 14982 of 17672, showing 5 records out of 88360 total, starting on record 74906, ending on 74910