NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 59606 | CVE-2006-0877 | Cross-site scripting vulnerability in Easy Forum 2.5 allows remote attackers to inject arbitrary web script or HTML via the image variable. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 59862 | CVE-2006-1140 | SQL injection vulnerability in rss.php in RedBLoG 0.5 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 60118 | CVE-2006-1409 | Buffer overflow in Vavoom 1.19.1 and earlier allows remote attackers to cause a denial of service (application crash) via an invalid comprLength value in a compressed packet. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 60374 | CVE-2006-1669 | SQL injection vulnerability in chat/messagesL.php3 in phpHeaven Team PHPMyChat 0.14.5 and earlier allows remote attackers to execute arbitrary SQL commands via the T parameter. NOTE: this issue can be leveraged to execute arbitrary shell commands since the username is later processed in an eval() call, but since the username originated from the SQL injection, it could be a resultant issue. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 60630 | CVE-2006-1925 | Directory traversal vulnerability in the editnews module (inc/editnews.mdu) in index.php in CuteNews 1.4.1 allows remote attackers to read or modify files via the source parameter in the (1) editnews or (2) doeditnews action. NOTE: this can also produce resultant XSS when the target file does not exist. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 15182 of 17672, showing 5 records out of 88360 total, starting on record 75906, ending on 75910