NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61173 | CVE-2006-2478 | Bitrix Site Manager 4.1.x allows remote attackers to redirect users to other websites via a modified back_url during a HTTP POST request. NOTE: this issue has been referred to as "cross-site scripting," but that is inconsistent with the common use of the term. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61685 | CVE-2006-3001 | Cross-site scripting (XSS) vulnerability in search.php in OkScripts OkMall 1.0 allow remote attackers to inject arbitrary web script or HTML via the page parameter. NOTE: this might be resultant from another vulnerability, since the XSS is reflected in an error message. | 2 | 5.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
62197 | CVE-2006-3523 | Clearswift MIMEsweeper for Web before 5.1.15 Hotfix allows remote attackers to cause a denial of service (crash) via an encrypted archived .RAR file, which triggers a scan error and causes the Web Policy Engine service to terminate. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
63733 | CVE-2006-5127 | Multiple cross-site scripting (XSS) vulnerabilities in Bartels Schoene ConPresso before 4.0.5a allow remote attackers to inject arbitrary web script or HTML via (1) the nr parameter in detail.php, (2) the msg parameter in db_mysql.inc.php, and (3) the pos parameter in index.php. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
64245 | CVE-2006-5651 | list.php in DigiOz Guestbook before 1.7.1 allows remote attackers to obtain sensitive information via a non-numeric page parameter, which displays the installation path in the resulting error message. | 2 | 5 | Medium | 2016-12-20 | 2016-10-17 | View |
Page 17317 of 17672, showing 5 records out of 88360 total, starting on record 86581, ending on 86585