NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
65144 | CVE-2006-6600 | Cross-site scripting (XSS) vulnerability in dir.php in TorrentFlux 2.2, when allows remote attackers to inject arbitrary web script or HTML via double URL-encoded strings in the dir parameter, a related issue to CVE-2006-5609. | 2 | 6 | Medium | 2016-12-20 | 2008-09-05 | View | |
65400 | CVE-2006-6857 | Cross-site scripting (XSS) vulnerability in modules/credits/credits.php in Docebo LMS allows remote attackers to inject arbitrary web script or HTML via the lang parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
65657 | CVE-2006-7114 | P-News 2.0 stores db/user.txt under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as usernames and password hashes via a direct request. NOTE: this might be the same issue as CVE-2006-6888. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
71545 | CVE-2004-1155 | Internet Explorer 5.01 through 6 allows remote attackers to spoof arbitrary web sites by injecting content from one window into another window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability. NOTE: later research shows that Internet Explorer 7 on Windows XP SP2 is also vulnerable. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
73081 | CVE-2004-2704 | Hastymail 1.0.1 and earlier (stable) and 1.1 and earlier (development) does not send the "attachment" parameter in the Content-Disposition field for attachments, which causes the attachment to be rendered inline by Internet Explorer when the victim clicks the download link, which facilitates cross-site scripting (XSS) and possibly other attacks. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 16870 of 17672, showing 5 records out of 88360 total, starting on record 84346, ending on 84350