NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61489 | CVE-2006-2804 | Cross-site scripting (XSS) vulnerability in index.cfm in Goss Intelligent Content Management (iCM) 7.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the keyword parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party sources. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
62513 | CVE-2006-3846 | PHP remote file inclusion vulnerability in extadminmenus.class.php in the MultiBanners 1.0.1 for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
62769 | CVE-2006-4115 | PHP remote file inclusion vulnerability in common.inc.php in PgMarket 2.2.3, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the CFG[libdir] parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
63025 | CVE-2006-4387 | Apple Mac OS X 10.4 through 10.4.7, when the administrator clears the "Allow user to administer this computer" checkbox in System Preferences for a user, does not remove the user"s account from the appserveradm or appserverusr groups, which still allows the user to manage WebObjects applications. | 2 | 4.6 | Medium | 2016-12-20 | 2011-03-07 | View | |
63537 | CVE-2006-4922 | Unrestricted file upload vulnerability in starnet/editors/htmlarea/popups/images.php in Site@School (S@S) 2.4.02 and earlier allows remote attackers to upload and execute arbitrary files with executable extensions. | 2 | 5 | Medium | 2016-12-20 | 2016-10-17 | View |
Page 1797 of 17672, showing 5 records out of 88360 total, starting on record 8981, ending on 8985