NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65604  CVE-2006-7061  Scriptsez.net E-Dating System stores data files with predictable names under the web document root with insufficient access control, which allows remote attackers to read private messages and leverage them for cross-site scripting (XSS) attacks.    9.3  High  2016-12-20  2008-09-05  View
70724  CVE-2004-0273  Directory traversal vulnerability in RealOne Player, RealOne Player 2.0, and RealOne Enterprise Desktop allows remote attackers to upload arbitrary files via an RMP file that contains .. (dot dot) sequences in a .rjs skin file.    9.3  High  2016-12-20  2016-10-17  View
73028  CVE-2004-2651  Multiple cross-site scripting (XSS) vulnerabilities in YaCy before 0.32 allow remote attackers to inject arbitrary web script or HTML via the (1) urlmaskfilter parameter to index.html or the (2) page parameter to Wiki.html.    4.3  Medium  2016-12-20  2008-09-05  View
58948  CVE-2006-0208  Multiple cross-site scripting (XSS) vulnerabilities in PHP 4.4.1 and 5.1.1, when display_errors and html_errors are on, allow remote attackers to inject arbitrary web script or HTML via inputs to PHP applications that are not filtered when they are included in the resulting error message.    2.6  Low  2016-12-20  2011-09-13  View
59204  CVE-2006-0466  Cross-site scripting (XSS) vulnerability in search.asp in Goldstag Content Management System allows remote attackers to inject arbitrary web script or HTML via the text parameter.    4.3  Medium  2016-12-20  2008-09-05  View

Page 16559 of 17672, showing 5 records out of 88360 total, starting on record 82791, ending on 82795

Actions