NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61581 | CVE-2006-2896 | profile.php in FunkBoard CF0.71 allows remote attackers to change arbitrary passwords via a modified uid hidden form field in an Edit Profile action. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61837 | CVE-2006-3158 | index.php in Eduha Meeting does not properly restrict file extensions before permitting a file upload, which allows remote attackers to bypass security checks and upload or execute arbitrary php code via the add action. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62093 | CVE-2006-3415 | Tor before 0.1.1.20 uses improper logic to validate the "OR" destination, which allows remote attackers to perform a man-in-the-middle (MITM) attack via unspecified vectors. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
62349 | CVE-2006-3681 | Multiple cross-site scripting (XSS) vulnerabilities in awstats.pl in AWStats 6.5 build 1.857 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) refererpagesfilter, (2) refererpagesfilterex, (3) urlfilterex, (4) urlfilter, (5) hostfilter, or (6) hostfilterex parameters, a different set of vectors than CVE-2006-1945. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
62605 | CVE-2006-3947 | PHP remote file inclusion vulnerability in components/com_mambatstaff/mambatstaff.php in the Mambatstaff 3.1b and earlier component for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 16992 of 17672, showing 5 records out of 88360 total, starting on record 84956, ending on 84960