NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59100 | CVE-2006-0361 | Cross-site scripting (XSS) vulnerability in addcomment.php in Bit 5 Blog 8.01 allows remote attackers to inject arbitrary web script or HTML via a javascript URI in an <a> tag in the comment parameter, which strips most tags but not <a>. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
59356 | CVE-2006-0625 | Directory traversal vulnerability in Spip_RSS.PHP in SPIP 1.8.2g and earlier allows remote attackers to read or include arbitrary files via ".." sequences in the GLOBALS[type_urls] parameter, which could then be used to execute arbitrary code via resultant direct static code injection in the file parameter to spip_acces_doc.php3. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
59612 | CVE-2006-0883 | OpenSSH on FreeBSD 5.3 and 5.4, when used with OpenPAM, does not properly handle when a forked child process terminates during PAM authentication, which allows remote attackers to cause a denial of service (client connection refusal) by connecting multiple times to the SSH server, waiting for the password prompt, then disconnecting. | 2 | 5 | Medium | 2016-12-20 | 2011-08-26 | View | |
59868 | CVE-2006-1146 | Stack-based buffer overflow in the Cmd_Say_f function in g_cmds.c in Alien Arena 2006 Gold Edition 5.00 allows remote attackers (possibly authenticated) to execute arbitrary code by sending a long message to the server. | 2 | 6.5 | Medium | 2016-12-20 | 2011-03-07 | View | |
60124 | CVE-2006-1415 | Cross-site scripting (XSS) vulnerability in iforget.aspx in dotNetBB 2.42EC SP 3 and earlier allows remote attackers to inject arbitrary web script or HTML via the em parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 16427 of 17672, showing 5 records out of 88360 total, starting on record 82131, ending on 82135