NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62499 | CVE-2006-3831 | The Backup selection in Kailash Nadh boastMachine (formerly bMachine) 3.1 and earlier uses predicable filenames for database backups and stores the files under the web root with insufficient access control, which allows remote attackers to obtain sensitive information by downloading a backup file. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
62755 | CVE-2006-4099 | Business Objects Crystal Enterprise 9 and 10 generates predictable session identifiers, which allows remote attackers to hijack sessions of other users via WCSID cookie values. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63011 | CVE-2006-4372 | PHP remote file inclusion vulnerability in admin.lurm_constructor.php in the Lurm Constructor component (com_lurm_constructor) 0.6b and earlier for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the lm_absolute_path parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63267 | CVE-2006-4634 | Cross-site scripting (XSS) vulnerability in index.php in VBZooM allows remote attackers to inject arbitrary web script or HTML via the UserID parameter, a different vector than CVE-2006-1133 and CVE-2005-2441. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
63523 | CVE-2006-4908 | OSU 3.11alpha and 3.10a allows remote attackers to obtain sensitive information via a URL containing an * (asterisk) wildcard, which displays all matching file and directory information. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 200 of 17672, showing 5 records out of 88360 total, starting on record 996, ending on 1000