NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
58851  CVE-2006-0111  Cross-site scripting vulnerability in index.php in Boxcar Media Shopping Cart allows remote attackers to inject arbitrary web script or HTML via the (1) parent or (2) pg parameter.    Medium  2016-12-20  2011-03-07  View
59363  CVE-2006-0632  The gen_rand_string function in phpBB 2.0.19 uses insufficiently random data (small value space) to create the activation key ("validation ID") that is sent by e-mail when establishing a password, which makes it easier for remote attackers to obtain the key and modify passwords for existing accounts or create new accounts.    6.4  Medium  2016-12-20  2011-03-07  View
59619  CVE-2006-0890  Directory traversal vulnerability in SpeedProject Squeez 5.1, as used in (1) ZipStar 5.1 and (2) SpeedCommander 11.01.4450, allows remote attackers to overwrite arbitrary files via unspecified manipulations in a (1) JAR or (2) ZIP archive.    Medium  2016-12-20  2011-03-07  View
59875  CVE-2006-1153  SQL injection vulnerability in D2-Shoutbox 4.2 allows remote attackers to execute arbitrary SQL commands via the load parameter, when performing a Shoutbox action through Invision Power Board (IPB).    Medium  2016-12-20  2011-03-07  View
60131  CVE-2006-1422  SQL injection vulnerability in details_view.php in PHP Booking Calendar 1.0c and earlier allows remote attackers to execute arbitrary SQL commands via the event_id parameter.    Medium  2016-12-20  2008-09-05  View

Page 16681 of 17672, showing 5 records out of 88360 total, starting on record 83401, ending on 83405

Actions