NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60930 | CVE-2006-2227 | Cross-site scripting (XSS) vulnerability in misc.php in PunBB 1.2.11 allows remote attackers to inject arbitrary web script or HTML via the req_message parameter, because the value of the redirect_url parameter is not sanitized. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
61186 | CVE-2006-2491 | Cross-site scripting (XSS) vulnerability in (1) index.php and (2) bmc/admin.php in BoastMachine (bMachine) 3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the query string, which is not properly filtered when it is accessed using the $_SERVER["PHP_SELF"] variable. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61442 | CVE-2006-2757 | Cross-site scripting (XSS) vulnerability in Chipmunk guestbook allows remote attackers to inject arbitrary web script or HTML via the (1) start parameter in (a) index.php; (2) forumID parameter in index.php, (b) newtopic.php, and (c) reply.php; and (3) ID parameter to (d) edit.php. | 2 | 4.3 | Medium | 2016-12-20 | 2009-08-26 | View | |
61698 | CVE-2006-3014 | Microsoft Excel allows user-assisted attackers to execute arbitrary javascript and redirect users to arbitrary sites via an Excel spreadsheet with an embedded Shockwave Flash Player ActiveX Object, which is automatically executed when the user opens the spreadsheet. | 2 | 5.1 | Medium | 2016-12-20 | 2011-10-03 | View | |
61954 | CVE-2006-3275 | SQL injection vulnerability in profile.php in YaBB SE 1.5.5 and earlier allows remote attackers to execute SQL commands via a double-encoded user parameter in a viewprofile action. | 2 | 7.5 | High | 2016-12-20 | 2016-10-17 | View |
Page 201 of 17672, showing 5 records out of 88360 total, starting on record 1001, ending on 1005