NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64992 | CVE-2006-6447 | Multiple cross-site scripting (XSS) vulnerabilities in Vt-Forum Lite 1.3 and 1.5 allow remote attackers to inject arbitrary web script or HTML via (1) the StrMes parameter in vf_info.asp and possibly (2) a URL in the SRC attribute of an IFRAME element that is submitted to vf_newtopic.asp. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
65248 | CVE-2006-6704 | Cross-site scripting (XSS) vulnerability in the Webadmin in @Mail before 4.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving "unescaped data in the database." | 2 | 6.8 | Medium | 2016-12-20 | 2008-11-15 | View | |
65504 | CVE-2006-6961 | WebRoot Spy Sweeper 4.5.9 and earlier does not detect malware based on file contents, which allows remote attackers to bypass malware detection by changing a file"s name. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
225 | CVE-2008-0240 | /idm/help/index.jsp in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allows remote attackers to inject frames from arbitrary web sites and conduct phishing attacks via the helpUrl parameter, aka "frame injection." | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
65761 | CVE-2006-7218 | eZ publish before 3.8.1 does not properly enforce permissions for "content edit Language" when there are four or more languages, which allows remote authenticated users to perform translations into languages that are not listed in a Module Function Limitation policy. | 2 | 4 | Medium | 2016-12-20 | 2015-07-28 | View |
Page 15795 of 17672, showing 5 records out of 88360 total, starting on record 78971, ending on 78975