NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
65604 | CVE-2006-7061 | Scriptsez.net E-Dating System stores data files with predictable names under the web document root with insufficient access control, which allows remote attackers to read private messages and leverage them for cross-site scripting (XSS) attacks. | 2 | 9.3 | High | 2016-12-20 | 2008-09-05 | View | |
70724 | CVE-2004-0273 | Directory traversal vulnerability in RealOne Player, RealOne Player 2.0, and RealOne Enterprise Desktop allows remote attackers to upload arbitrary files via an RMP file that contains .. (dot dot) sequences in a .rjs skin file. | 2 | 9.3 | High | 2016-12-20 | 2016-10-17 | View | |
73028 | CVE-2004-2651 | Multiple cross-site scripting (XSS) vulnerabilities in YaCy before 0.32 allow remote attackers to inject arbitrary web script or HTML via the (1) urlmaskfilter parameter to index.html or the (2) page parameter to Wiki.html. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
58948 | CVE-2006-0208 | Multiple cross-site scripting (XSS) vulnerabilities in PHP 4.4.1 and 5.1.1, when display_errors and html_errors are on, allow remote attackers to inject arbitrary web script or HTML via inputs to PHP applications that are not filtered when they are included in the resulting error message. | 2 | 2.6 | Low | 2016-12-20 | 2011-09-13 | View | |
59204 | CVE-2006-0466 | Cross-site scripting (XSS) vulnerability in search.asp in Goldstag Content Management System allows remote attackers to inject arbitrary web script or HTML via the text parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 16559 of 17672, showing 5 records out of 88360 total, starting on record 82791, ending on 82795