NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63625  CVE-2006-5019  Google Mini 4.4.102.M.36 and earlier allows remote attackers to obtain sensitive information via a direct request for /search with an invalid client parameter, which reveals the path in an error message.    Medium  2016-12-20  2008-09-05  View
65417  CVE-2006-6874  Multiple cross-site scripting (XSS) vulnerabilities in friend.php in eNdonesia 8.4 allow remote attackers to inject arbitrary web script or HTML via the (1) Message or (2) Your Name field. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.    6.8  Medium  2016-12-20  2008-09-05  View
138  CVE-2008-0148  TUTOS 1.3 does not restrict access to php/admin/cmd.php, which allows remote attackers to execute arbitrary shell commands via the cmd parameter in a direct request.    10  High  2017-01-03  2008-09-05  View
65674  CVE-2006-7131  PHP remote file inclusion vulnerability in extras/mt.php in Jinzora 2.6 allows remote attackers to execute arbitrary PHP code via the web_root parameter.    10  High  2016-12-20  2008-09-05  View
906  CVE-2008-0936  SQL injection vulnerability in index.php in the Prayer List (prayerlist) 1.04 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the cid parameter in a view action.    7.5  High  2017-01-03  2008-09-05  View

Page 16898 of 17672, showing 5 records out of 88360 total, starting on record 84486, ending on 84490

Actions