NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
60146  CVE-2006-1437  UPOINT @1 Event Publisher stores sensitive information under the web document root with insufifcient access control, which allows remote attackers to read private comments via a direct request to eventpublisher.txt.    Medium  2016-12-20  2008-09-05  View
60402  CVE-2006-1697  Cross-site scripting (XSS) vulnerability in Matt Wright Guestbook 2.3.1 allows remote attackers to execute arbitrary web script or HTML via the (1) Your Name, (2) E-Mail, or (3) Comments fields when posting a message.    4.3  Medium  2016-12-20  2011-03-07  View
60658  CVE-2006-1953  Directory traversal vulnerability in Caucho Resin 3.0.17 and 3.0.18 for Windows allows remote attackers to read arbitrary files via a "C:%5C" (encoded drive letter) in a URL.    7.8  High  2016-12-20  2011-03-07  View
60914  CVE-2006-2211  Absolute path traversal vulnerability in index.php in 321soft PhP-Gallery 0.9 allows remote attackers to browse arbitrary directories via the path parameter.    Medium  2016-12-20  2011-03-07  View
61170  CVE-2006-2475  Directory traversal vulnerability in (1) edit_mailtexte.cgi and (2) bestmail.cgi in Cosmoshop 8.11.106 and earlier allows remote administrators to read arbitrary files via ".." sequences in the file parameter.    7.8  High  2016-12-20  2008-09-05  View

Page 16435 of 17672, showing 5 records out of 88360 total, starting on record 82171, ending on 82175

Actions