NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
61998  CVE-2006-3320  Cross-site scripting (XSS) vulnerability in command.php in SiteBar 3.3.8 and earlier allows remote attackers to inject arbitrary web script or HTML via the command parameter.    2.6  Low  2016-12-20  2011-03-07  View
62254  CVE-2006-3580  SQL injection vulnerability in pages.asp in ASP Stats Generator before 2.1.2 allows remote attackers to execute arbitrary SQL commands via the order parameter.    7.5  High  2016-12-20  2011-03-07  View
62510  CVE-2006-3843  PHP remote file inclusion vulnerability in com_calendar.php in Calendar Mambo Module 1.5.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter.    7.5  High  2016-12-20  2008-09-05  View
62766  CVE-2006-4112  Unspecified vulnerability in the "dependency resolution mechanism" in Ruby on Rails 1.1.0 through 1.1.5 allows remote attackers to execute arbitrary Ruby code via a URL that is not properly handled in the routing code, which leads to a denial of service (application hang) or "data loss," a different vulnerability than CVE-2006-4111.    7.5  High  2016-12-20  2012-07-06  View
63022  CVE-2006-4384  Heap-based buffer overflow in Apple QuickTime before 7.1.3 allows user-assisted remote attackers to execute arbitrary code via the COLOR_64 chunk in a FLIC (FLC) movie.    5.1  Medium  2016-12-20  2011-03-07  View

Page 16434 of 17672, showing 5 records out of 88360 total, starting on record 82166, ending on 82170

Actions