NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59609  CVE-2006-0880  Multiple cross-site scripting (XSS) vulnerabilities in index.php in Noah"s Classifieds 1.3 allow remote attackers to inject arbitrary web script or HTML via the (1) inf parameter; or, when register_globals is enabled, the (2) upperTemplate and (3) lowerTemplate parameters.    4.3  Medium  2016-12-20  2011-03-07  View
59865  CVE-2006-1143  Cross-site scripting (XSS) vulnerability in FTPoed Blog Engine 1.1 allows remote attackers to inject arbitrary web script or HTML via the comment_body parameter, as used by the comment field, when posting a comment.    4.3  Medium  2016-12-20  2008-09-05  View
60121  CVE-2006-1412  TFT Gallery 0.10 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the admin password file and obtain password hashes via a direct request to admin/passwd.    Medium  2016-12-20  2011-03-07  View
60377  CVE-2006-1672  The installation of Cisco Transport Controller (CTC) for Cisco Optical Networking System (ONS) 15000 series nodes adds a Java policy file entry with a wildcard that grants the java.security.AllPermission permission to any http URL containing "fs/LAUNCHER.jar", which allows remote attackers to execute arbitrary code on a CTC workstation, aka bug ID CSCea25049.    7.5  High  2016-12-20  2011-03-07  View
60633  CVE-2006-1928  Cisco IOS XR, when configured for Multi Protocol Label Switching (MPLS) and running on Cisco CRS-1 routers, allows remote attackers to cause a denial of service (Modular Services Cards (MSC) crash or "MPLS packet handling problems") via certain MPLS packets, as identified by Cisco bug IDs (1) CSCsd15970 and (2) CSCsd55531.    Medium  2016-12-20  2011-03-07  View

Page 17446 of 17672, showing 5 records out of 88360 total, starting on record 87226, ending on 87230

Actions