NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60851 | CVE-2006-2146 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in HB-NS 1.1.6 allow remote attackers to inject arbitrary web script or HTML via the (1) poster_name, (2) poster_email, (3) poster_homepage, or (4) message parameter. | 2 | 5.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
61875 | CVE-2006-3196 | index.php in singapore 0.10.0 and earlier allows remote attackers to obtain the installation path via an invalid template parameter, which reveals the path in an error message. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
62899 | CVE-2006-4260 | Directory traversal vulnerability in index.php in Fotopholder 1.8 allows remote attackers to read arbitrary directories or files via a .. (dot dot) in the path parameter. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
65203 | CVE-2006-6659 | The Microsoft Office Outlook Recipient ActiveX control (ole32.dll) in Windows XP SP2 allows remote attackers to cause a denial of service (Internet Explorer 7 hang) via crafted HTML. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
65459 | CVE-2006-6916 | Getahead Direct Web Remoting (DWR) before 1.1.3 allows attackers to cause a denial of service (infinite loop) via unknown vectors related to "crafted input." | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 17176 of 17672, showing 5 records out of 88360 total, starting on record 85876, ending on 85880