NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59811 | CVE-2006-1089 | Cross-site scripting (XSS) vulnerability in header.php in PunBB 1.2.10 allows remote attackers to inject arbitrary web script or HTML via the URL, which is not properly handled when the PHP_SELF variable is used to handle a pun_page tag. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
60067 | CVE-2006-1358 | Unspecified vulnerability in BEA WebLogic Portal 8.1 up to SP5 causes a JSR-168 Portlet to be retrieved from the cache for the wrong session, which might allow one user to see a Portlet of another user. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
60323 | CVE-2006-1616 | Multiple SQL injection vulnerabilities in Advanced Poll 2.02 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to comments.php or (2) poll_id parameter to page.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
60579 | CVE-2006-1874 | Unspecified vulnerability in Oracle Database Server 8.1.7.4, 9.0.1.5, and 9.2.0.6 has unknown impact and attack vectors in the Oracle Spatial component, aka Vuln# DB09. NOTE: Oracle has not disputed reliable claims that this issue is SQL injection in MDSYS.PRVT_IDX using the (1) EXECUTE_INSERT, (2) EXECUTE_DELETE, (3) EXECUTE_UPDATE, (4) EXECUTE UPDATE, and (5) CRT_DUMMY functions. | 2 | 7.5 | High | 2016-12-20 | 2012-10-22 | View | |
60835 | CVE-2006-2130 | SQL injection vulnerability in include/class_poll.php in Advanced Poll 2.0.4 allows remote attackers to execute arbitrary SQL commands via the User-Agent HTTP header. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 17125 of 17672, showing 5 records out of 88360 total, starting on record 85621, ending on 85625