NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64402 | CVE-2006-5827 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in phpComasy CMS 0.7.9pre and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) username or (2) password parameters. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
64658 | CVE-2006-6097 | GNU tar 1.16 and 1.15.1, and possibly other versions, allows user-assisted attackers to overwrite arbitrary files via a tar file that contains a GNUTYPE_NAMES record with a symbolic link, which is not properly handled by the extract_archive function in extract.c and extract_mangle function in mangle.c, a variant of CVE-2002-1216. | 2 | 4 | Medium | 2016-12-20 | 2011-03-07 | View | |
64914 | CVE-2006-6368 | PHP remote file inclusion vulnerability in login.php.inc in awrate 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the toroot parameter to search.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65170 | CVE-2006-6626 | Cross-site scripting (XSS) vulnerability in an unspecified component of Moodle 1.5 allows remote attackers to inject arbitrary web script or HTML via a javascript URI in the SRC attribute of an IMG element. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information. NOTE: It is unclear whether this candidate overlaps CVE-2006-4784 or CVE-2006-4941. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
65426 | CVE-2006-6883 | ** DISPUTED ** PHP remote file inclusion vulnerability in php4you.php in PHPIrc_bot 0.2 allows remote attackers to execute arbitrary PHP code via a URL in the dir parameter. NOTE: this issue is disputed by CVE, since the dir variable is declared before being used. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 17025 of 17672, showing 5 records out of 88360 total, starting on record 85121, ending on 85125