NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63196 | CVE-2006-4563 | Cross-site scripting (XSS) vulnerability in the MyHeadlines before 4.3.2 module for PHP-Nuke allows remote attackers to inject arbitrary web script or HTML via the myh_op parameter to modules.php. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
63452 | CVE-2006-4835 | Bluview Blue Magic Board (BMB) (aka BMForum) 5.5 allows remote attackers to obtain sensitive information via a direct request to (1) footer.php, (2) header.php, (3) db_mysql_error.php, (4) langlist.php, (5) sendmail.php, or (6) style.php, which reveals the path in various error messages. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
64220 | CVE-2006-5625 | PHP remote file inclusion vulnerability in wwwdev/nxheader.inc.php in N/X 2002 Professional Edition Web Content Management System (WCMS) 4.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the c[path] parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
64476 | CVE-2006-5901 | Hawking Technology wireless router WR254-CA uses a hardcoded IP address among the set of DNS server IP addresses, which could allow remote attackers to cause a denial of service or hijack the router by attacking or spoofing the server at the hardcoded address. NOTE: it could be argued that this issue reflects an inherent limitation of DNS itself, so perhaps it should not be included in CVE. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
65244 | CVE-2006-6700 | Cross-site scripting (XSS) vulnerability in @Mail WebMail allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: This information is based upon a vague initial disclosure. Details will be updated after the grace period has ended. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 16429 of 17672, showing 5 records out of 88360 total, starting on record 82141, ending on 82145