NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61339 | CVE-2006-2654 | Directory traversal vulnerability in smbfs smbfs on FreeBSD 4.10 up to 6.1 allows local users to escape chroot restrictions for an SMB-mounted filesystem via "..\" sequences. NOTE: this is similar to CVE-2006-1864, but this is a different implementation of smbfs, so it has a different CVE identifier. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
63131 | CVE-2006-4496 | Cross-site scripting (XSS) vulnerability in comments.php in IwebNegar 1.1 allows remote attackers to inject arbitrary web script or HTML via the comment parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
63387 | CVE-2006-4763 | IBM Lotus Domino Web Access (DWA) 7.0.1 does not expire a client"s Lightweight Third-Party Authentication token (LtpaToken) upon logout, which allows remote attackers to obtain a user"s privileges by intercepting the LtpaToken cookie. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63643 | CVE-2006-5037 | ** DISPUTED ** MySource Matrix after 3.8 allows remote attackers to use the application as an HTTP proxy server via a MIME encoded URL in the sq_content_src parameter to access arbitrary sites with the server"s IP address and conduct cross-site scripting (XSS) attacks. NOTE: the researcher reports that "The vendor does not consider this a vulnerability." | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
65692 | CVE-2006-7149 | Multiple cross-site scripting (XSS) vulnerabilities in Mambo 4.6.x allow remote attackers to inject arbitrary web script or HTML via (1) the query string to (a) index.php, which reflects the string in an error message from mod_login.php; and the (2) mcname parameter to (b) moscomment.php and (c) com_comment.php. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17019 of 17672, showing 5 records out of 88360 total, starting on record 85091, ending on 85095