NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59635 | CVE-2006-0908 | PHP-Nuke 7.8 Patched 3.2 allows remote attackers to bypass SQL injection protection mechanisms via /%2a (/*) sequences with the "ad_click" word in the query string, as demonstrated via the kala parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
59891 | CVE-2006-1172 | Stack-based buffer overflow in the createPKCS10 function in Cryptomathic Cenroll ActiveX Control 1.1.0.0 allows remote attackers to execute arbitrary code via vectors related to the TDC Digital signature. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
60147 | CVE-2006-1438 | Multiple cross-site scripting (XSS) vulnerabilities in Andy"s PHP Knowledgebase (aphpkb) 0.57 allow remote attackers to inject arbitrary web script or HTML via the (1) keyword_list parameter to (a) index.php; (2) title, (3) article, (4) author, and (5) keywords parameters to (b) submit_article.php; and (6) Question, (7) Name, and (8) Email parameters to (c) submit_question.php. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
60403 | CVE-2006-1698 | Cross-site scripting (XSS) vulnerability in Matt Wright Guestbook 2.3.1 allows remote attackers to execute arbitrary web script or HTML via the (1) url, (2) city, (3) state, or (4) country parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information, although it is likely that they are the result of post-disclosure analysis. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
60659 | CVE-2006-1954 | SQL injection vulnerability in authent.php4 in Nicolas Fischer (aka NFec) RechnungsZentrale V2 1.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the User field. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 16503 of 17672, showing 5 records out of 88360 total, starting on record 82511, ending on 82515