NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59157 | CVE-2006-0419 | BEA WebLogic Server and WebLogic Express 9.0, 8.1 through SP5, and 7.0 through SP6 allows anonymous binds to the embedded LDAP server, which allows remote attackers to read user entries or cause a denial of service (unspecified) via a large number of connections. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
59669 | CVE-2006-0942 | SQL injection vulnerability in profil.php in PwsPHP 1.2.3, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the aff_news_form parameter, a different vulnerability than CVE-2005-1509. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
59925 | CVE-2006-1211 | IBM Tivoli Micromuse Netcool/NeuSecure 3.0.236 configures a MySQL database to allow connections from any source IP address with the ns database account, which allows remote attackers to bypass the Netcool/NeuSecure application layer and perform unauthorized database actions. NOTE: IBM has privately confirmed to CVE that a fix is available for these issues. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
61205 | CVE-2006-2510 | Cross-site scripting (XSS) vulnerability in the URL submission form in YourFreeWorld.com Short Url & Url Tracker Script allows remote attackers to inject arbitrary web script or HTML via an unspecified form for submitting URLs. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
61717 | CVE-2006-3033 | Cross-site scripting (XSS) vulnerability in MyScrapbook 3.1 allows remote attackers to inject arbitrary web script or HTML via the input box in singlepage.php when submitting scrapbook pages. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 16139 of 17672, showing 5 records out of 88360 total, starting on record 80691, ending on 80695