NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59172 | CVE-2006-0434 | Directory traversal vulnerability in action.php in phpXplorer allows remote attackers to read arbitrary files via ".." (dot dot) sequences and null bytes in the sAction parameter, a different vulnerability than CVE-2006-0244. NOTE: if the functionality of phpXplorer supports the upload of PHP files, then this issue would not cross privilege boundaries and would not be a vulnerability. | 2 | 5 | Medium | 2016-12-20 | 2013-01-03 | View | |
59428 | CVE-2006-0697 | Zen Cart before 1.2.7 does not protect the admin/includes directory, which allows remote attackers to cause unknown impact via unspecified vectors, probably direct requests. | 2 | 10 | High | 2016-12-20 | 2013-01-03 | View | |
59684 | CVE-2006-0961 | SQL injection vulnerability in yazdir.asp in Cilem Hiber 1.1 allows remote attackers to execute arbitrary SQL commands via the haber_id parameter. NOTE: this product has also been referred to as "Cilem News," although that does not appear to be the proper name. | 2 | 7.5 | High | 2016-12-20 | 2016-10-17 | View | |
59940 | CVE-2006-1226 | Cross-site scripting (XSS) vulnerability in Drupal 4.5.x before 4.5.8 and 4.6.x before 4.5.8 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
60196 | CVE-2006-1487 | Cross-site scripting (XSS) vulnerability in ActiveCampaign SupportTrio 2.50.2 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters to the KnowledgeBase search module. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 203 of 17672, showing 5 records out of 88360 total, starting on record 1011, ending on 1015