NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
61472  CVE-2006-2787  EvalInSandbox in Mozilla Firefox and Thunderbird before 1.5.0.4 allows remote attackers to gain privileges via javascript that calls the valueOf method on objects that were created outside of the sandbox.    9.3  High  2016-12-20  2011-03-07  View
61728  CVE-2006-3044  Cross-site scripting (XSS) vulnerability in LogiSphere 1.6.0 allows remote attackers to inject arbitrary web script or HTML via the URL, which is reflected in an error page.    2.6  Low  2016-12-20  2011-03-07  View
61984  CVE-2006-3305  Multiple cross-site scripting (XSS) vulnerabilities in UebiMiau Webmail 2.7.10, and 2.7.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) f_user parameter in index.php, the (2) pag parameter in messages.php, or the (3) lid, (4) tid, and (5) sid parameters in error.php.    2.6  Low  2016-12-20  2011-03-07  View
62240  CVE-2006-3566  search.results.php in HiveMail 3.1 and earlier allows remote attackers to obtain the installation path via certain manipulations related to the (1) searchdate and (2) folderids parameters.    Medium  2016-12-20  2008-10-09  View
62496  CVE-2006-3828  Incomplete blacklist vulnerability in Kailash Nadh boastMachine (formerly bMachine) 3.1 and earlier allows remote authenticated administrators to bypass SQL injection protection mechanisms by using commas, quote characters, pound sign (#) characters, "UNION," and "SELECT," which are not filtered by the product, which only checks for "insert," "delete," "update," and "replace."    6.5  Medium  2016-12-20  2011-03-07  View

Page 16353 of 17672, showing 5 records out of 88360 total, starting on record 81761, ending on 81765

Actions