NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60141 | CVE-2006-1432 | fusionZONE couponZONE 4.2 allows remote attackers to obtain the full path of the web server, and other sensitive information, via invalid values, as demonstrated using manipulations associated with SQL. | 2 | 5 | Medium | 2016-12-20 | 2008-11-03 | View | |
60653 | CVE-2006-1948 | The "Add Sender to Address Book" operation (AddSenderToAddressBook.lss) and NameHelper.lss in IBM Lotus Notes 6.0 and 6.5 before 20060331 do not properly store information in the Personal Address Book when multiple messages are checked and a message uses AltFrom, which might allow user-assisted remote attackers to trick a user into sending e-mail to an unauthorized recipient. | 2 | 4 | Medium | 2016-12-20 | 2008-09-05 | View | |
61421 | CVE-2006-2736 | PHP remote file inclusion vulnerability in blend_data/blend_common.php in Blend Portal 1.2.0, as used with phpBB when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. NOTE: This is a similar vulnerability to CVE-2006-2507. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
62957 | CVE-2006-4318 | Buffer overflow in WFTPD Server 3.23 allows remote attackers to execute arbitrary code via long SIZE commands. | 2 | 6.5 | Medium | 2016-12-20 | 2011-03-07 | View | |
63725 | CVE-2006-5119 | Multiple cross-site scripting (XSS) vulnerabilities in Zen Cart 1.3.5 allow remote attackers to inject arbitrary web script or HTML via the (1) admin_name or (2) admin_pass parameter in (a) admin/login.php, or the (3) admin_email parameter in (b) admin/password_forgotten.php. | 2 | 4 | Medium | 2016-12-20 | 2011-09-13 | View |
Page 17019 of 17672, showing 5 records out of 88360 total, starting on record 85091, ending on 85095