NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62284 | CVE-2006-3610 | index.php in Orbitcoders OrbitMATRIX 1.0 allows remote attackers to obtain sensitive information (partial database schema) via a modified page_name parameter, which reflects portions of an SQL query in the result. NOTE: it is not clear whether the information is target-specific. If not, then this issue is not an exposure. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
62796 | CVE-2006-4142 | SQL injection vulnerability in extra/online.php in Virtual War (VWar) 1.5.0 R14 and earlier allows remote attackers to execute arbitrary SQL commands via the n parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63308 | CVE-2006-4675 | Unrestricted file upload vulnerability in lib/exe/media.php in DokuWiki before 2006-03-09c allows remote attackers to upload executable files into the data/media folder via unspecified vectors. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63564 | CVE-2006-4956 | Cross-site scripting (XSS) vulnerability in the updateuser servlet in Neon WebMail for Java before 5.08 allows remote attackers to inject arbitrary web script or HTML via the in_name parameter, as used by the Name field. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
64844 | CVE-2006-6283 | Multiple cross-site scripting (XSS) vulnerabilities in Vikingboard 0.1.2 allow remote attackers to inject arbitrary web script or HTML via the subject field of (1) a private message (PM) or (2) a bulletin board post. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 16461 of 17672, showing 5 records out of 88360 total, starting on record 82301, ending on 82305