NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62489 | CVE-2006-3821 | Multiple cross-site scripting (XSS) vulnerabilities in ATutor 1.5.3 allow remote attackers to inject arbitrary web script or HTML via the (1) lang parameter in (a) index_list.php and (2) year, (3) month, and (4) day parameter in (b) registration.php. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
62745 | CVE-2006-4088 | Multiple cross-site scripting (XSS) vulnerabilities in CivicSpace 0.8.5 allow remote attackers to inject arbitrary web script or HTML via the (1) Subject, (2) Comment, and (3) Add new comment sections. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
63001 | CVE-2006-4362 | Cross-site scripting (XSS) vulnerability in getad.php in Diesel Paid Mail allows remote attackers to inject arbitrary web script or HTML via the ps parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
63257 | CVE-2006-4624 | CRLF injection vulnerability in Utils.py in Mailman before 2.1.9rc1 allows remote attackers to spoof messages in the error log and possibly trick the administrator into visiting malicious URLs via CRLF sequences in the URI. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
63513 | CVE-2006-4897 | CMtextS 1.0 and earlier stores users_logins/admin.txt under the web document root with insufficient access control, which allows remote attackers to obtain the administrator password. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 16314 of 17672, showing 5 records out of 88360 total, starting on record 81566, ending on 81570