NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60445 | CVE-2006-1740 | Mozilla Firefox 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 allows remote attackers to spoof secure site indicators such as the locked icon by opening the trusted site in a popup window, then changing the location to a malicious site. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
60701 | CVE-2006-1996 | Scry Gallery 1.1 allows remote attackers to obtain sensitive information via an invalid p parameter, which reveals the path in an error message. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
60957 | CVE-2006-2254 | Buffer overflow in filecpnt.exe in FileCOPA 1.01 allows remote attackers to cause a denial of service (application crash) via a username with a large number of newline characters. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61213 | CVE-2006-2518 | Cross-site scripting (XSS) vulnerability in phpwcms 1.2.5-DEV allows remote attackers to inject arbitrary web script or HTML via the BL[be_cnt_plainhtml] parameter to include/inc_tmpl/content/cnt6.inc.php. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
61469 | CVE-2006-2784 | The PLUGINSPAGE functionality in Mozilla Firefox before 1.5.0.4 allows remote user-assisted attackers to execute privileged code by tricking a user into installing missing plugins and selecting the "Manual Install" button, then using nested javascript: URLs. NOTE: the manual install button is used for downloading software from a remote web site, so this issue would not cross privilege boundaries if the user progresses to the point of installing malicious software from the attacker-controlled site. | 2 | 5.1 | Medium | 2016-12-20 | 2011-06-20 | View |
Page 1800 of 17672, showing 5 records out of 88360 total, starting on record 8996, ending on 9000