NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60913 | CVE-2006-2210 | Cross-site scripting (XSS) vulnerability in index.php in 321soft PhP-Gallery 0.9 allows remote attackers to inject arbitrary web script or HTML via the path parameter. NOTE: this issue might be resultant from the directory traversal vulnerability. | 2 | 5.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61425 | CVE-2006-2740 | Multiple SQL injection vulnerabilities in Epicdesigns tinyBB 0.3 allow remote attackers to execute arbitrary SQL commands via the (1) q parameter in (a) forgot.php, and the (2) username and (3) password parameters in (b) login.php, and other unspecified vectors. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
62193 | CVE-2006-3519 | Multiple cross-site scripting (XSS) vulnerabilities in The Banner Engine (tbe) 4.0 allow remote attackers to execute arbitrary web script or HTML via the (1) text parameter in a search action to (a) top.php, and the (2) adminpass or (3) adminlogin parameter to (b) signup.php. | 2 | 5.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
64241 | CVE-2006-5647 | Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11 allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via a malformed CHM file with a large name length in the CHM chunk header, aka "CHM name length memory consumption vulnerability." | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
64497 | CVE-2006-5922 | index.php in Wheatblog (wB) allows remote attackers to obtain sensitive information via certain values of the postPtr[] and next parameters, which reveals the path in an error message. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17164 of 17672, showing 5 records out of 88360 total, starting on record 85816, ending on 85820