NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65248  CVE-2006-6704  Cross-site scripting (XSS) vulnerability in the Webadmin in @Mail before 4.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving "unescaped data in the database."    6.8  Medium  2016-12-20  2008-11-15  View
65504  CVE-2006-6961  WebRoot Spy Sweeper 4.5.9 and earlier does not detect malware based on file contents, which allows remote attackers to bypass malware detection by changing a file"s name.    6.8  Medium  2016-12-20  2008-09-05  View
225  CVE-2008-0240  /idm/help/index.jsp in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allows remote attackers to inject frames from arbitrary web sites and conduct phishing attacks via the helpUrl parameter, aka "frame injection."    4.3  Medium  2017-01-03  2011-03-07  View
65761  CVE-2006-7218  eZ publish before 3.8.1 does not properly enforce permissions for "content edit Language" when there are four or more languages, which allows remote authenticated users to perform translations into languages that are not listed in a Module Function Limitation policy.    Medium  2016-12-20  2015-07-28  View
481  CVE-2008-0506  include/imageObjectIM.class.php in Coppermine Photo Gallery (CPG) before 1.4.15, when the ImageMagick picture processing method is configured, allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) quality, (2) angle, or (3) clipval parameter to picEditor.php.    6.8  Medium  2017-01-03  2009-09-11  View

Page 16569 of 17672, showing 5 records out of 88360 total, starting on record 82841, ending on 82845

Actions