NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60027 | CVE-2006-1318 | Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, Office 2004 for Mac, and Office X for Mac do not properly parse record lengths, which allows remote attackers to execute arbitrary code via a malformed control in an Office document, aka "Microsoft Office Control Vulnerability." | 2 | 9.3 | High | 2016-12-20 | 2014-09-19 | View | |
60283 | CVE-2006-1575 | Multiple cross-site scripting (XSS) vulnerabilities in news.php in QLnews 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) autorx and (2) newsx parameters. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
60539 | CVE-2006-1834 | Integer signedness error in Opera before 8.54 allows remote attackers to execute arbitrary code via long values in a stylesheet attribute, which pass a length check. NOTE: a sign extension problem makes the attack easier with shorter strings. | 2 | 5.1 | Medium | 2016-12-20 | 2016-10-17 | View | |
60795 | CVE-2006-2090 | Multiple SQL injection vulnerabilities in misc.php in MySmartBB 1.1.x allow remote attackers to execute arbitrary SQL commands via the (1) id and (2) username parameters. | 2 | 7.5 | High | 2016-12-20 | 2013-01-03 | View | |
61051 | CVE-2006-2349 | E-Business Designer (eBD) 3.1.4 and earlier allows remote attackers to upload or modify arbitrary files, and execute arbitrary code, via a direct request to (1) common/html_editor/image_browser.upload.html, (2) common/html_editor/image_browser.html, or (3) common/html_editor/html_editor.html. NOTE: this can also be used for cross-site scripting (XSS) attacks by uploading cascading style sheet (.CSS) files. | 2 | 6.8 | Medium | 2016-12-20 | 2016-10-17 | View |
Page 16884 of 17672, showing 5 records out of 88360 total, starting on record 84416, ending on 84420