NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59515  CVE-2006-0785  Absolute path traversal vulnerability in include.php in PHPKIT 1.6.1 Release 2 and earlier allows remote attackers to include and execute arbitrary local files via a direct request with a path parameter with a null character and beginning with (1) "/" (slash) for an absolute pathname or (2) a drive letter (such as "C:"), which bypasses checks for ".." sequences and trailing ".php" extensions.    6.4  Medium  2016-12-20  2008-09-05  View
60283  CVE-2006-1575  Multiple cross-site scripting (XSS) vulnerabilities in news.php in QLnews 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) autorx and (2) newsx parameters.    6.8  Medium  2016-12-20  2008-09-05  View
61307  CVE-2006-2612  Novell Client for Windows 4.8 and 4.9 does not restrict access to the clipboard contents while a machine is locked, which allows users with physical access to read the current clipboard contents by pasting them into the "User Name" field on the login prompt.    2.1  Low  2016-12-20  2008-09-05  View
62331  CVE-2006-3663  Finjan Vital Security Appliance 5100/8100 NG 8.3.5 stores passwords in plaintext in a backup file, which allows local users to gain privileges. NOTE: the vendor has notified CVE that this issue was fixed in 8.3.6.    4.6  Medium  2016-12-20  2008-09-05  View
892  CVE-2008-0922  SQL injection vulnerability in the Manuales 0.1 module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the cid parameter in a viewdownload action to modules.php.    7.5  High  2017-01-03  2008-09-05  View

Page 16800 of 17672, showing 5 records out of 88360 total, starting on record 83996, ending on 84000

Actions