NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59157  CVE-2006-0419  BEA WebLogic Server and WebLogic Express 9.0, 8.1 through SP5, and 7.0 through SP6 allows anonymous binds to the embedded LDAP server, which allows remote attackers to read user entries or cause a denial of service (unspecified) via a large number of connections.    6.4  Medium  2016-12-20  2008-09-05  View
59669  CVE-2006-0942  SQL injection vulnerability in profil.php in PwsPHP 1.2.3, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the aff_news_form parameter, a different vulnerability than CVE-2005-1509.    7.5  High  2016-12-20  2008-09-05  View
59925  CVE-2006-1211  IBM Tivoli Micromuse Netcool/NeuSecure 3.0.236 configures a MySQL database to allow connections from any source IP address with the ns database account, which allows remote attackers to bypass the Netcool/NeuSecure application layer and perform unauthorized database actions. NOTE: IBM has privately confirmed to CVE that a fix is available for these issues.    7.5  High  2016-12-20  2008-09-05  View
61205  CVE-2006-2510  Cross-site scripting (XSS) vulnerability in the URL submission form in YourFreeWorld.com Short Url & Url Tracker Script allows remote attackers to inject arbitrary web script or HTML via an unspecified form for submitting URLs.    6.8  Medium  2016-12-20  2008-09-05  View
61717  CVE-2006-3033  Cross-site scripting (XSS) vulnerability in MyScrapbook 3.1 allows remote attackers to inject arbitrary web script or HTML via the input box in singlepage.php when submitting scrapbook pages.    4.3  Medium  2016-12-20  2008-09-05  View

Page 16139 of 17672, showing 5 records out of 88360 total, starting on record 80691, ending on 80695

Actions