NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60146 | CVE-2006-1437 | UPOINT @1 Event Publisher stores sensitive information under the web document root with insufifcient access control, which allows remote attackers to read private comments via a direct request to eventpublisher.txt. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
60402 | CVE-2006-1697 | Cross-site scripting (XSS) vulnerability in Matt Wright Guestbook 2.3.1 allows remote attackers to execute arbitrary web script or HTML via the (1) Your Name, (2) E-Mail, or (3) Comments fields when posting a message. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
60658 | CVE-2006-1953 | Directory traversal vulnerability in Caucho Resin 3.0.17 and 3.0.18 for Windows allows remote attackers to read arbitrary files via a "C:%5C" (encoded drive letter) in a URL. | 2 | 7.8 | High | 2016-12-20 | 2011-03-07 | View | |
60914 | CVE-2006-2211 | Absolute path traversal vulnerability in index.php in 321soft PhP-Gallery 0.9 allows remote attackers to browse arbitrary directories via the path parameter. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61170 | CVE-2006-2475 | Directory traversal vulnerability in (1) edit_mailtexte.cgi and (2) bestmail.cgi in Cosmoshop 8.11.106 and earlier allows remote administrators to read arbitrary files via ".." sequences in the file parameter. | 2 | 7.8 | High | 2016-12-20 | 2008-09-05 | View |
Page 16435 of 17672, showing 5 records out of 88360 total, starting on record 82171, ending on 82175