NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
58928 | CVE-2006-0188 | webmail.php in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary web pages into the right frame via a URL in the right_frame parameter. NOTE: this has been called a cross-site scripting (XSS) issue, but it is different than what is normally identified as XSS. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
59184 | CVE-2006-0446 | Unspecified vulnerability in WeBWorK 2.1.3 and 2.2-pre1 allows remote privilged attackers to execute arbitrary commands as the web server via unknown attack vectors. | 2 | 6.5 | Medium | 2016-12-20 | 2011-03-07 | View | |
59952 | CVE-2006-1238 | SQL injection vulnerability in DSLogin 1.0, with magic_quotes_gpc disabled, allows remote attackers to execute arbitrary SQL commands and bypass authentication via the $log_userid variable in (1) index.php and (2) admin/index.php. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
61488 | CVE-2006-2803 | Multiple cross-site scripting (XSS) vulnerabilities in PHP ManualMaker 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) id parameter to index.php, (2) search field (possibly the s parameter), or (3) comment field. | 2 | 6.8 | Medium | 2016-12-20 | 2011-09-13 | View | |
62000 | CVE-2006-3322 | SQL injection vulnerability in includes/functions_logging.php in phpRaid 3.0.5, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the log_hack function. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 1762 of 17672, showing 5 records out of 88360 total, starting on record 8806, ending on 8810