NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62638 | CVE-2006-3980 | PHP remote file inclusion vulnerability in administrator/components/com_mgm/help.mgm.php in Mambo Gallery Manager (MGM) 0.95r2 and earlier for Mambo 4.5 allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
62894 | CVE-2006-4255 | Cross-site scripting (XSS) vulnerability in horde/imp/search.php in Horde IMP H3 before 4.1.3 allows remote attackers to include arbitrary web script or HTML via multiple unspecified vectors related to folder names, as injected into the vfolder_label form field in the IMP search screen. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
63150 | CVE-2006-4517 | Novell iManager 2.5 and 2.0.2 allows remote attackers to cause a denial of service (crash) in the Tomcat server via a long TREE parameter in an HTTP POST, which triggers a NULL pointer dereference. | 2 | 7.8 | High | 2016-12-20 | 2011-08-31 | View | |
63406 | CVE-2006-4782 | src/index.php in WebSPELL 4.01.01 and earlier, when register_globals is enabled, allows remote attackers to bypass authentication and gain sensitive information stored in the database via a modified userID parameter in a write action to admin/database.php. | 2 | 5.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
63662 | CVE-2006-5056 | Cross-site scripting (XSS) vulnerability in index.php in Opial Audio/Video Download Management 1.0 allows remote attackers to inject arbitrary web script or HTML via the destination parameter in the Login view. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 17192 of 17672, showing 5 records out of 88360 total, starting on record 85956, ending on 85960