NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60911 | CVE-2006-2208 | Multiple cross-site scripting (XSS) vulnerabilities in mynews.inc.php in MyNews 1.6.2 allow remote attackers to inject arbitrary web script or HTML via the (1) hash and (2) page parameters. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
61167 | CVE-2006-2472 | Unspecified vulnerability in BEA WebLogic Server 9.1 and 9.0, 8.1 through SP5, 7.0 through SP6, and 6.1 through SP7 allows untrusted applications to obtain private server keys. | 2 | 4.9 | Medium | 2016-12-20 | 2011-03-07 | View | |
62447 | CVE-2006-3779 | Citrix MetaFrame up to XP 1.0 Feature 1, except when running on Windows Server 2003, installs a registry key with an insecure ACL, which allows remote authenticated users to gain privileges. | 2 | 6.5 | Medium | 2016-12-20 | 2011-03-07 | View | |
63215 | CVE-2006-4582 | Cross-site request forgery (CSRF) vulnerability in The Address Book 1.04e allows remote attackers to perform unauthorized actions as other users via unspecified vectors, as demonstrated by deleting arbitrary users via the id parameter in a deleteuser action in users.php. | 2 | 5 | Medium | 2016-12-20 | 2008-11-15 | View | |
63471 | CVE-2006-4855 | The DeviceSymEvent driver in Symantec Norton Personal Firewall 2006 9.1.0.33, and other versions of Norton Personal Firewall, Internet Security, AntiVirus, SystemWorks, Symantec Client Security SCS 1.x, 2.x, 3.0, and 3.1, Symantec AntiVirus Corporate Edition SAVCE 8.x, 9.x, 10.0, and 10.1, Symantec pcAnywhere 11.5 only, and Symantec Host, allows local users to cause a denial of service (system crash) via invalid data, as demonstrated by calling DeviceIoControl to send the data. | 2 | 4.9 | Medium | 2016-12-20 | 2011-07-18 | View |
Page 17089 of 17672, showing 5 records out of 88360 total, starting on record 85441, ending on 85445