NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64902  CVE-2006-6356  Multiple cross-site scripting (XSS) vulnerabilities in templates/link_temp.php in PHPNews 1.3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) url, (2) id, (3) subject, (4) username, or (5) time parameter.    6.8  Medium  2016-12-20  2016-12-06  View
65158  CVE-2006-6614  The save_log_local function in Fully Automatic Installation (FAI) 2.10.1, and possibly 3.1.2, when verbose mode is enabled, stores the root password hash in /var/log/fai/current/fai.log, whose file permissions allow it to be copied to other hosts when fai-savelog is called and allows attackers to obtain the hash.    1.9  Low  2016-12-20  2011-03-07  View
65414  CVE-2006-6871  Multiple cross-site scripting (XSS) vulnerabilities in eNdonesia 8.4 allow remote attackers to inject arbitrary web script or HTML via (1) the mod parameter in a viewlink operation in mod.php, (2) the intypeid parameter in a showinfo operation in the informasi module in mod.php, (3) the "your Friend" field in friend.php, or (4) the "Main Text" field in admin.php.    6.8  Medium  2016-12-20  2011-03-07  View
65671  CVE-2006-7128  PHP remote file inclusion vulnerability in forum/forum.php JAF CMS 4.0 RC1 allows remote attackers to execute arbitrary PHP code via a URL in the website parameter.    7.5  High  2016-12-20  2008-09-05  View
73095  CVE-2004-2718  PHPMyChat 0.14.5 does not remove or protect setup.php3 after installation, which allows attackers to obtain sensitive information including database passwords via a direct request.    4.3  Medium  2016-12-20  2008-09-05  View

Page 16953 of 17672, showing 5 records out of 88360 total, starting on record 84761, ending on 84765

Actions