NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59834  CVE-2006-1112  Aztek Forum 4.0 allows remote attackers to obtain sensitive information via a long login value in a register form, which displays the installation path in a MySQL error message.    Medium  2016-12-20  2008-09-10  View
60346  CVE-2006-1641  Multiple SQL injection vulnerabilities in CzarNews 1.14 allow remote attackers to execute arbitrary SQL commands via the (1) usern or (2) passw parameters to (a) cn_auth.php, (3) s parameter to (b) news.php, or (4) a parameter to (c) dpost.php.    5.1  Medium  2016-12-20  2011-03-07  View
60602  CVE-2006-1897  Webplus (aka talentsoft) Web+Shop 5.3.6, when Redirect URL for "Script Not Found" Error is not configured, allows remote attackers to obtain sensitive information via a quote (") or possibly other invalid value in the storeid parameter in store.wml in webplus.exe, which reveals the path in a "Script Not Found" error message.    Medium  2016-12-20  2008-09-05  View
60858  CVE-2006-2153  Cross-site scripting (XSS) vulnerability in HTM_PASSWD in DirectAdmin Hosting Management allows remote attackers to inject arbitrary web script or HTML via the domain parameter.    4.3  Medium  2016-12-20  2011-03-07  View
61114  CVE-2006-2415  Multiple cross-site scripting (XSS) vulnerabilities in FlexChat 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) username and (2) CFTOKEN parameter in (a) index.cfm and (3) CFTOKEN and (4) CFID parameter in (b) chat.cfm.    5.8  Medium  2016-12-20  2013-08-24  View

Page 15226 of 17672, showing 5 records out of 88360 total, starting on record 76126, ending on 76130

Actions