NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
65312 | CVE-2006-6768 | Multiple cross-site scripting (XSS) vulnerabilities in default.asp in PWP Technologies The Classified Ad System allow remote attackers to inject arbitrary web script or HTML via the (1) cat or (2) main parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
65569 | CVE-2006-7026 | PHP remote file inclusion vulnerability in sources/join.php in Aardvark Topsites PHP 4.2.2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the CONFIG[path] parameter, a different vector than CVE-2006-2149. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
72993 | CVE-2004-2616 | The file server in ActivePost Standard 3.1 and earlier allows remote authenticated users to obtain sensitive information by uploading a file, which reveals the path in a success message. | 2 | 4 | Medium | 2016-12-20 | 2016-10-17 | View | |
58913 | CVE-2006-0173 | Hummingbird Collaboration (aka Hummingbird Enterprise Collaboration) 5.21 and earlier allows remote attackers to misrepresent the type and name of a file via modified doc_ext and id parameters, which might trick a user into downloading dangerous or unexpected content. | 2 | 4 | Medium | 2016-12-20 | 2011-03-07 | View | |
59169 | CVE-2006-0431 | Unspecified vulnerability in BEA WebLogic Server and WebLogic Express 8.1 SP5 allows untrusted applications to obtain the server"s SSL identity via unknown attack vectors. | 2 | 2.1 | Low | 2016-12-20 | 2011-03-07 | View |
Page 16356 of 17672, showing 5 records out of 88360 total, starting on record 81776, ending on 81780