NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59428 | CVE-2006-0697 | Zen Cart before 1.2.7 does not protect the admin/includes directory, which allows remote attackers to cause unknown impact via unspecified vectors, probably direct requests. | 2 | 10 | High | 2016-12-20 | 2013-01-03 | View | |
59684 | CVE-2006-0961 | SQL injection vulnerability in yazdir.asp in Cilem Hiber 1.1 allows remote attackers to execute arbitrary SQL commands via the haber_id parameter. NOTE: this product has also been referred to as "Cilem News," although that does not appear to be the proper name. | 2 | 7.5 | High | 2016-12-20 | 2016-10-17 | View | |
59940 | CVE-2006-1226 | Cross-site scripting (XSS) vulnerability in Drupal 4.5.x before 4.5.8 and 4.6.x before 4.5.8 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
60196 | CVE-2006-1487 | Cross-site scripting (XSS) vulnerability in ActiveCampaign SupportTrio 2.50.2 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters to the KnowledgeBase search module. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
60452 | CVE-2006-1747 | PHP remote file inclusion vulnerability in Virtual War (VWar) 1.5.0 allows remote attackers to execute arbitrary PHP code via a URL in the vwar_root parameter to (1) admin/admin.php, (2) war.php, (3) stats.php, (4) news.php, (5) joinus.php, (6) challenge.php, (7) calendar.php, (8) member.php, (9) popup.php, and other unspecified scripts in the admin folder. NOTE: these are different attack vectors than CVE-2006-1636 and CVE-2006-1503. | 2 | 7.5 | High | 2016-12-20 | 2016-10-17 | View |
Page 16374 of 17672, showing 5 records out of 88360 total, starting on record 81866, ending on 81870