NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63510 | CVE-2006-4894 | Cross-site scripting (XSS) vulnerability in forms/lostpassword.php in iDevSpot NixieAffiliate 1.9 and earlier allows remote attackers to inject arbitrary web script or HTML via the error parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
63766 | CVE-2006-5160 | ** DISPUTED ** Multiple unspecified vulnerabilities in Mozilla Firefox have unspecified vectors and impact, as claimed during ToorCon 2006. NOTE: the vendor and original researchers have released a follow-up comment disputing this issue, in which one researcher states that "I have no undisclosed Firefox vulnerabilities. The person who was speaking with me made this claim, and I honestly have no idea if he has them or not." | 2 | 7.8 | High | 2016-12-20 | 2008-09-05 | View | |
64534 | CVE-2006-5959 | SQL injection vulnerability in browse.asp in A+ Store E-Commerce allows remote attackers to execute arbitrary SQL commands via the ParentID parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
64790 | CVE-2006-6229 | Codewalkers ltwCalendar (aka PHP Event Calendar) before 4.2.1 logs failed passwords, which might allow attackers to infer correct passwords from the log file. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
65559 | CVE-2006-7016 | phpjobboard allows remote attackers to bypass authentication and gain administrator privileges via a direct request to admin.php with adminop=job-edit. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 169 of 17672, showing 5 records out of 88360 total, starting on record 841, ending on 845