NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
61718  CVE-2006-3034  MyScrapbook 3.1 allows remote attackers to obtain sensitive information via a direct request to files in the txt-db-api directory such as txt-db-api/sql.php, which reveals the path in an error message.    Medium  2016-12-20  2011-03-07  View
61974  CVE-2006-3295  Cross-site scripting (XSS) vulnerability in header.php in Open Guestbook 0.5 allows remote attackers to inject arbitrary web script or HTML via the title parameter.    4.3  Medium  2016-12-20  2011-03-07  View
62230  CVE-2006-3556  PHP remote file inclusion vulnerability in extcalendar.php in Mohamed Moujami ExtCalendar 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.    6.8  Medium  2016-12-20  2011-03-07  View
62486  CVE-2006-3818  Cross-site scripting (XSS) vulnerability in the login page in Novell GroupWise WebAccess 6.5 before 20060721 and WebAccess 7 before 20060727 allows remote attackers to inject arbitrary web script or HTML via the GWAP.version parameter.    4.3  Medium  2016-12-20  2011-03-07  View
62742  CVE-2006-4085  PHP remote file inclusion vulnerability in Olaf Noehring The Search Engine Project (TSEP) 0.942 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the tsep_config[absPath] parameter to pagenavigation.php, a different vector than CVE-2006-4055. NOTE: the provenance of this information is unknown; the details are obtained from third party information.    7.5  High  2016-12-20  2008-09-05  View

Page 1559 of 17672, showing 5 records out of 88360 total, starting on record 7791, ending on 7795

Actions