NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59515 | CVE-2006-0785 | Absolute path traversal vulnerability in include.php in PHPKIT 1.6.1 Release 2 and earlier allows remote attackers to include and execute arbitrary local files via a direct request with a path parameter with a null character and beginning with (1) "/" (slash) for an absolute pathname or (2) a drive letter (such as "C:"), which bypasses checks for ".." sequences and trailing ".php" extensions. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
60283 | CVE-2006-1575 | Multiple cross-site scripting (XSS) vulnerabilities in news.php in QLnews 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) autorx and (2) newsx parameters. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
61307 | CVE-2006-2612 | Novell Client for Windows 4.8 and 4.9 does not restrict access to the clipboard contents while a machine is locked, which allows users with physical access to read the current clipboard contents by pasting them into the "User Name" field on the login prompt. | 2 | 2.1 | Low | 2016-12-20 | 2008-09-05 | View | |
62331 | CVE-2006-3663 | Finjan Vital Security Appliance 5100/8100 NG 8.3.5 stores passwords in plaintext in a backup file, which allows local users to gain privileges. NOTE: the vendor has notified CVE that this issue was fixed in 8.3.6. | 2 | 4.6 | Medium | 2016-12-20 | 2008-09-05 | View | |
892 | CVE-2008-0922 | SQL injection vulnerability in the Manuales 0.1 module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the cid parameter in a viewdownload action to modules.php. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 16800 of 17672, showing 5 records out of 88360 total, starting on record 83996, ending on 84000