NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
62283  CVE-2006-3609  Cross-site scripting (XSS) vulnerability in index.php in Orbitcoders OrbitMATRIX 1.0 allows remote attackers to inject arbitrary web script or HTML via the page_name parameter with an IMG tag containing a javascript URI in the SRC attribute.    4.3  Medium  2016-12-20  2011-03-07  View
62539  CVE-2006-3878  Opsware Network Automation System (NAS) 6.0 installs /etc/init.d/mysql with insecure permissions, which allows local users to read the root password for the MySQL MAX database or gain privileges by modifying /etc/init.d/mysql.    2.1  Low  2016-12-20  2008-09-05  View
62795  CVE-2006-4141  SQL injection vulnerability in news.php in Virtual War (VWar) 1.5.0 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) sortby and (2) sortorder parameters.    7.5  High  2016-12-20  2008-09-05  View
63051  CVE-2006-4416  Untrusted search path vulnerability in the mkvg command in IBM AIX 5.2 and 5.3 allows local users to gain privileges by modifying the path to point to a malicious (1) chdev, (2) mkboot, (3) varyonvg, or (4) varyoffvg program.    7.2  High  2016-12-20  2011-03-07  View
63307  CVE-2006-4674  Direct static code injection vulnerability in doku.php in DokuWiki before 2006-030-09c allows remote attackers to execute arbitrary PHP code via the X-FORWARDED-FOR HTTP header, which is stored in config.php.    7.5  High  2016-12-20  2008-09-05  View

Page 16603 of 17672, showing 5 records out of 88360 total, starting on record 83011, ending on 83015

Actions