NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63510  CVE-2006-4894  Cross-site scripting (XSS) vulnerability in forms/lostpassword.php in iDevSpot NixieAffiliate 1.9 and earlier allows remote attackers to inject arbitrary web script or HTML via the error parameter.    4.3  Medium  2016-12-20  2008-09-05  View
63766  CVE-2006-5160  ** DISPUTED ** Multiple unspecified vulnerabilities in Mozilla Firefox have unspecified vectors and impact, as claimed during ToorCon 2006. NOTE: the vendor and original researchers have released a follow-up comment disputing this issue, in which one researcher states that "I have no undisclosed Firefox vulnerabilities. The person who was speaking with me made this claim, and I honestly have no idea if he has them or not."    7.8  High  2016-12-20  2008-09-05  View
64534  CVE-2006-5959  SQL injection vulnerability in browse.asp in A+ Store E-Commerce allows remote attackers to execute arbitrary SQL commands via the ParentID parameter.    7.5  High  2016-12-20  2008-09-05  View
64790  CVE-2006-6229  Codewalkers ltwCalendar (aka PHP Event Calendar) before 4.2.1 logs failed passwords, which might allow attackers to infer correct passwords from the log file.    Medium  2016-12-20  2008-09-05  View
65559  CVE-2006-7016  phpjobboard allows remote attackers to bypass authentication and gain administrator privileges via a direct request to admin.php with adminop=job-edit.    7.5  High  2016-12-20  2008-09-05  View

Page 169 of 17672, showing 5 records out of 88360 total, starting on record 841, ending on 845

Actions