NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
60288  CVE-2006-1580  Multiple cross-site scripting (XSS) vulnerabilities in Bugzero 4.3.1 and other versions allow remote attackers to inject arbitrary web script or HTML via the (1) msg parameter in query.jsp and (2) entryId parameter in edit.jsp.    5.8  Medium  2016-12-20  2011-03-07  View
60544  CVE-2006-1839  PHP remote file inclusion vulnerability in language.php in PHP Album 0.3.2.3, when register_globals is enabled, allows remote attackers to execute arbitrary code via an FTP URL in the data_dir parameter, which satisfies the file_exists function call.    7.5  High  2016-12-20  2011-03-07  View
60800  CVE-2006-2095  Phex before 2.8.6 allows remote attackers to cause a denial of service (application hang) by initiating multiple chat requests to a single user and then logging off.    Medium  2016-12-20  2013-01-03  View
61056  CVE-2006-2354  NmConsole/Login.asp in Ipswitch WhatsUp Professional 2006 and Ipswitch WhatsUp Professional 2006 Premium generates different error messages in a way that allows remote attackers to enumerate valid usernames. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.    Medium  2016-12-20  2008-09-05  View
61312  CVE-2006-2617  (1) AlstraSoft Web Host Directory 1.2, aka (2) HyperStop WebHost Directory 1.2, allows remote attackers to obtain the installation path via an invalid entry in the Username field on the login page, which causes the path to be displayed in an SQL error. NOTE: this issue might be resultant from SQL injection.    Medium  2016-12-20  2011-03-07  View

Page 16914 of 17672, showing 5 records out of 88360 total, starting on record 84566, ending on 84570

Actions