NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59804 | CVE-2006-1082 | Multiple cross-site scripting (XSS) vulnerabilities in phpArcadeScript 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the gamename parameter in tellafriend.php, (2) the login_status parameter in loginbox.php, (3) the submissionstatus parameter in index.php, the (4) cell_title_background_color and (5) browse_cat_name parameters in browse.php, the (6) gamefile parameter in displaygame.php, and (7) possibly other parameters in unspecified PHP scripts. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
60060 | CVE-2006-1351 | BEA WebLogic Server 6.1 SP7 and earlier allows remote attackers to read arbitrary files via unknown attack vectors related to a "default internal servlet" accessed through HTTP. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
60316 | CVE-2006-1609 | Unspecified vulnerability in Hitachi XFIT/S, XFIT/S/JCA, XFIT/S/ZGN, and XFIT/S ZENGIN TCP/IP Procedure allows remote attackers to cause a denial of service (server process and transfer control process stop) when the products "receive data unexpectedly". | 2 | 5 | Medium | 2016-12-20 | 2013-07-17 | View | |
60572 | CVE-2006-1867 | Unspecified vulnerability in Oracle Database Server 9.2.0.6 has unknown impact and attack vectors in the Advanced Replication component, aka Vuln# DB02. | 2 | 10 | High | 2016-12-20 | 2012-10-22 | View | |
60828 | CVE-2006-2123 | Multiple SQL injection vulnerabilities in the report interface in Network Administration Visualized (NAV) before 3.0.1 allow remote attackers to execute arbitrary SQL commands via unknown vectors. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 17082 of 17672, showing 5 records out of 88360 total, starting on record 85406, ending on 85410