NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59201 | CVE-2006-0463 | Cross-site scripting (XSS) vulnerability in IdeoContent Manager allows remote attackers to inject arbitrary web script or HTML via the (1) goto_id parameter to index.php or (2) page parameter to news_full.php. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
60737 | CVE-2006-2032 | Multiple SQL injection vulnerabilities in Core CoreNews 2.0.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) icon_id and (2) userid parameters in preview.php. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
61505 | CVE-2006-2820 | Cross-site scripting (XSS) vulnerability in HotWebScripts.com Weblog Oggi 1.0 allows remote attackers to inject arbitrary web script or HTML via a comment, possibly involving a javascript URI in the SRC attribute of an IMG element. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
62273 | CVE-2006-3599 | SQL injection vulnerability in the Nuke Advanced Classifieds module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the id_ads parameter in an EditAds op. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63809 | CVE-2006-5203 | Invision Power Board (IPB) 2.1.7 and earlier allows remote restricted administrators to inject arbitrary web script or HTML, or execute arbitrary SQL commands, via a forum description that contains a crafted image with PHP code, which is executed when the user visits the "Manage Forums" link in the Admin control panel. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 16392 of 17672, showing 5 records out of 88360 total, starting on record 81956, ending on 81960