NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64736  CVE-2006-6175  Directory traversal vulnerability in lib/FBView.php in Horde Kronolith H3 before 2.0.7 and 2.1.x before 2.1.4 allows remote attackers to include arbitrary files and execute PHP code via a .. (dot dot) sequence in the view parameter.    7.5  High  2016-12-20  2016-10-17  View
64992  CVE-2006-6447  Multiple cross-site scripting (XSS) vulnerabilities in Vt-Forum Lite 1.3 and 1.5 allow remote attackers to inject arbitrary web script or HTML via (1) the StrMes parameter in vf_info.asp and possibly (2) a URL in the SRC attribute of an IFRAME element that is submitted to vf_newtopic.asp.    6.8  Medium  2016-12-20  2011-03-07  View
65248  CVE-2006-6704  Cross-site scripting (XSS) vulnerability in the Webadmin in @Mail before 4.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving "unescaped data in the database."    6.8  Medium  2016-12-20  2008-11-15  View
65504  CVE-2006-6961  WebRoot Spy Sweeper 4.5.9 and earlier does not detect malware based on file contents, which allows remote attackers to bypass malware detection by changing a file"s name.    6.8  Medium  2016-12-20  2008-09-05  View
225  CVE-2008-0240  /idm/help/index.jsp in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allows remote attackers to inject frames from arbitrary web sites and conduct phishing attacks via the helpUrl parameter, aka "frame injection."    4.3  Medium  2017-01-03  2011-03-07  View

Page 15564 of 17672, showing 5 records out of 88360 total, starting on record 77816, ending on 77820

Actions