NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59740 | CVE-2006-1017 | The c-client library 2000, 2001, or 2004 for PHP before 4.4.4 and 5.x before 5.1.5 do not check the (1) safe_mode or (2) open_basedir functions, and when used in applications that accept user-controlled input for the mailbox argument to the imap_open function, allow remote attackers to obtain access to an IMAP stream data structure and conduct unauthorized IMAP actions. | 2 | 9.3 | High | 2016-12-20 | 2011-07-14 | View | |
59996 | CVE-2006-1282 | CRLF injection vulnerability in inc/function.php in MyBulletinBoard (MyBB) 1.04 allows remote attackers to conduct cross-site scripting (XSS), poison caches, or hijack pages via CRLF (%0A%0D) sequences in the Referrer HTTP header field, possibly when redirecting to other web pages. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
60252 | CVE-2006-1544 | Multiple cross-site scripting (XSS) vulnerabilities in news.php in vscripts (aka Kuba Kunkiewicz) VNews 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) autorkomentarza and (2) tresckomentarza parameters. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
60508 | CVE-2006-1803 | Cross-site scripting (XSS) vulnerability in sql.php in phpMyAdmin 2.7.0-pl1 allows remote attackers to inject arbitrary web script or HTML via the sql_query parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
60764 | CVE-2006-2059 | action_public/search.php in Invision Power Board (IPB) 2.1.x and 2.0.x before 20060425 allows remote attackers to execute arbitrary PHP code via a search with a crafted value of the lastdate parameter, which alters the behavior of a regular expression to add a "#e" (execute) modifier. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 16700 of 17672, showing 5 records out of 88360 total, starting on record 83496, ending on 83500