NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61685 | CVE-2006-3001 | Cross-site scripting (XSS) vulnerability in search.php in OkScripts OkMall 1.0 allow remote attackers to inject arbitrary web script or HTML via the page parameter. NOTE: this might be resultant from another vulnerability, since the XSS is reflected in an error message. | 2 | 5.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61941 | CVE-2006-3262 | SQL injection vulnerability in the Weblinks module (weblinks.php) in Mambo 4.6rc1 and earlier allows remote attackers to execute arbitrary SQL commands via the title parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62197 | CVE-2006-3523 | Clearswift MIMEsweeper for Web before 5.1.15 Hotfix allows remote attackers to cause a denial of service (crash) via an encrypted archived .RAR file, which triggers a scan error and causes the Web Policy Engine service to terminate. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
62453 | CVE-2006-3785 | Symantec pcAnywhere 12.5 obfuscates the passwords in a GUI textbox with asterisks but does not encrypt them in the associated .cif (aka caller or CallerID) file, which allows local users to obtain the passwords from the window using tools such as Nirsoft Asterwin. | 2 | 2.1 | Low | 2016-12-20 | 2008-09-05 | View | |
62709 | CVE-2006-4052 | Multiple PHP remote file inclusion vulnerabilities in Turnkey Web Tools PHP Simple Shop 2.0 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the abs_path parameter to (1) admin/index.php, (2) admin/adminindex.php, (3) admin/adminglobal.php, (4) admin/login.php, (5) admin/menu.php or (6) admin/header.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 17067 of 17672, showing 5 records out of 88360 total, starting on record 85331, ending on 85335