NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61676 | CVE-2006-2992 | Cross-site scripting (XSS) vulnerability in display.asp in My Photo Scrapbook 1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the key_m parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
61932 | CVE-2006-3253 | ** DISPUTED ** Cross-site scripting (XSS) vulnerability in member.php in vBulletin 3.5.x allows remote attackers to inject arbitrary web script or HTML via the u parameter. NOTE: the vendor has disputed this report, stating that they have been unable to replicate the issue and that "the userid parameter is run through our filtering system as an unsigned integer." | 2 | 2.6 | Low | 2016-12-20 | 2008-09-05 | View | |
62188 | CVE-2006-3514 | Multiple cross-site scripting (XSS) vulnerabilities in admin/actions.php in PHP-Blogger 2.2.5, and possibly earlier versions, allow remote attackers to execute arbitrary web script or HTML via the (1) name, (2) title, (3) news, (4) description, and (5) sitename parameters. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
62444 | CVE-2006-3776 | PHP remote file inclusion vulnerability in order/index.php in IDevSpot (1) PhpHostBot 1.0 and (2) AutoHost 3.0 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-08-22 | View | |
62700 | CVE-2006-4043 | index.php in myWebland myBloggie 2.1.4 and earlier allows remote attackers to obtain sensitive information via a query that only specifies the viewdate mode, which reveals the table prefix in a SQL error message. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 17559 of 17672, showing 5 records out of 88360 total, starting on record 87791, ending on 87795