NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61812 | CVE-2006-3132 | Cross-site scripting (XSS) vulnerability in qtofm.php4 in QTOFileManager 1.0 allows remote attackers to inject arbitrary web script or HTML via the msg parameter, as originally reported for index.php. | 2 | 5.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
62068 | CVE-2006-3390 | WordPress 2.0.3 allows remote attackers to obtain the installation path via a direct request to various files, such as those in the (1) wp-admin, (2) wp-content, and (3) wp-includes directories, possibly due to uninitialized variables. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
62324 | CVE-2006-3656 | Unspecified vulnerability in Microsoft PowerPoint 2003 allows user-assisted attackers to cause memory corruption via a crafted PowerPoint file, which triggers the corruption when the file is closed. NOTE: due to the lack of available details as of 20060717, it is unclear how this is related to CVE-2006-3655, CVE-2006-3660, and CVE-2006-3590, although it is possible that they are all different. | 2 | 2.6 | Low | 2016-12-20 | 2011-04-12 | View | |
62580 | CVE-2006-3922 | PHP remote file inclusion vulnerability in mod_membre/inscription.php in PortailPHP 1.7 allows remote attackers to execute arbitrary PHP code via a URL in the chemin parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62836 | CVE-2006-4195 | PHP remote file inclusion vulnerability in param.peoplebook.php in the Peoplebook Component for Mambo (com_peoplebook) 1.0 and earlier, and possibly 1.1.2, when register_globals and allow_url_fopen are enabled, allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2011-08-22 | View |
Page 16844 of 17672, showing 5 records out of 88360 total, starting on record 84216, ending on 84220