NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
58607 | CVE-2007-6612 | Directory traversal vulnerability in DirHandler (lib/mongrel/handlers.rb) in Mongrel 1.0.4 and 1.1.x before 1.1.3 allows remote attackers to read arbitrary files via an HTTP request containing double-encoded sequences (".%252e"). | 2 | 6.4 | Medium | 2017-01-07 | 2011-03-07 | View | |
59631 | CVE-2006-0903 | MySQL 5.0.18 and earlier allows local users to bypass logging mechanisms via SQL queries that contain the NULL character, which are not properly handled by the mysql_real_query function. NOTE: this issue was originally reported for the mysql_query function, but the vendor states that since mysql_query expects a null character, this is not an issue for mysql_query. | 2 | 4.6 | Medium | 2016-12-20 | 2011-03-07 | View | |
59887 | CVE-2006-1165 | Cross-site scripting (XSS) vulnerability in the mediamanager module in DokuWiki before 2006-03-05 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors relating to "handling EXIF data." | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
60143 | CVE-2006-1434 | Cross-site scripting (XSS) vulnerability in inscription.php in Annuaire (Directory) 1.0 allows remote attackers to inject arbitrary web script or HTML via the Comment Field (COMMENTAIRE parameter). | 2 | 6.8 | Medium | 2016-12-20 | 2013-07-03 | View | |
60655 | CVE-2006-1950 | Multiple cross-site scripting (XSS) vulnerabilities in banners.cgi in PerlCoders BannerFarm 2.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) aff and (2) cat parameters. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 17088 of 17672, showing 5 records out of 88360 total, starting on record 85436, ending on 85440