NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
62499  CVE-2006-3831  The Backup selection in Kailash Nadh boastMachine (formerly bMachine) 3.1 and earlier uses predicable filenames for database backups and stores the files under the web root with insufficient access control, which allows remote attackers to obtain sensitive information by downloading a backup file.    Medium  2016-12-20  2008-09-05  View
62755  CVE-2006-4099  Business Objects Crystal Enterprise 9 and 10 generates predictable session identifiers, which allows remote attackers to hijack sessions of other users via WCSID cookie values.    7.5  High  2016-12-20  2011-03-07  View
63011  CVE-2006-4372  PHP remote file inclusion vulnerability in admin.lurm_constructor.php in the Lurm Constructor component (com_lurm_constructor) 0.6b and earlier for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the lm_absolute_path parameter.    7.5  High  2016-12-20  2011-03-07  View
63267  CVE-2006-4634  Cross-site scripting (XSS) vulnerability in index.php in VBZooM allows remote attackers to inject arbitrary web script or HTML via the UserID parameter, a different vector than CVE-2006-1133 and CVE-2005-2441.    4.3  Medium  2016-12-20  2008-09-05  View
63523  CVE-2006-4908  OSU 3.11alpha and 3.10a allows remote attackers to obtain sensitive information via a URL containing an * (asterisk) wildcard, which displays all matching file and directory information.    Medium  2016-12-20  2008-09-05  View

Page 200 of 17672, showing 5 records out of 88360 total, starting on record 996, ending on 1000

Actions