NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60140 | CVE-2006-1431 | Cross-site scripting (XSS) vulnerability in local.cfm in fusionZONE couponZONE 4.2 allows remote attackers to inject arbitrary web script or HTML via URL-encoded (1) srchfor and (2) srchby parameters. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
60908 | CVE-2006-2204 | SQL injection vulnerability in the topic deletion functionality (post_delete function in func_mod.php) for Invision Power Board 2.1.5 allows remote authenticated moderators to execute arbitrary SQL commands via the selectedpids parameter, which bypasses an integer value check when the $id variable is an array. | 2 | 5.5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61420 | CVE-2006-2735 | PHP remote file inclusion vulnerability in language/lang_english/lang_activity.php in Activity MOD Plus (Amod) 1.1.0, as used with phpBB when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. NOTE: This is a similar vulnerability to CVE-2006-2507. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
61676 | CVE-2006-2992 | Cross-site scripting (XSS) vulnerability in display.asp in My Photo Scrapbook 1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the key_m parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
62188 | CVE-2006-3514 | Multiple cross-site scripting (XSS) vulnerabilities in admin/actions.php in PHP-Blogger 2.2.5, and possibly earlier versions, allow remote attackers to execute arbitrary web script or HTML via the (1) name, (2) title, (3) news, (4) description, and (5) sitename parameters. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 16983 of 17672, showing 5 records out of 88360 total, starting on record 84911, ending on 84915