NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59116 | CVE-2006-0377 | CRLF injection vulnerability in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary IMAP commands via newline characters in the mailbox parameter of the sqimap_mailbox_select command, aka "IMAP injection." | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
59372 | CVE-2006-0641 | Orbicule Undercover uses a third-party web server to determine the IP address through which the computer is accessing the Internet, but does not document this third-party disclosure, which leads to a potential privacy leak that might allow transmission of sensitive information to an unintended remote destination. | 2 | 2.6 | Low | 2016-12-20 | 2008-09-05 | View | |
59628 | CVE-2006-0899 | Directory traversal vulnerability in index.php in 4Images 1.7.1 and earlier allows remote attackers to read and include arbitrary files via ".." (dot dot) sequences in the template parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
59884 | CVE-2006-1162 | Directory traversal vulnerability in Nodez 4.6.1.1 and earlier allows remote attackers to read or include arbitrary PHP files via a .. (dot dot) in the op parameter, as demonstrated by inserting malicious Email parameters into list.gtdat, then accessing list.gtdat using the op parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
60140 | CVE-2006-1431 | Cross-site scripting (XSS) vulnerability in local.cfm in fusionZONE couponZONE 4.2 allows remote attackers to inject arbitrary web script or HTML via URL-encoded (1) srchfor and (2) srchby parameters. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 17557 of 17672, showing 5 records out of 88360 total, starting on record 87781, ending on 87785