NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
60995  CVE-2006-2292  Multiple SQL injection vulnerabilities in IA-Calendar allow remote attackers to execute arbitrary SQL commands via the (1) type parameter in (a) calendar_new.asp and (b) default.asp, and (2) ID parameter in (c) calendar_detail.asp. NOTE: the provenance of this information is unknown; the details are obtained from third party information.    6.4  Medium  2016-12-20  2011-03-07  View
61251  CVE-2006-2556  Cross-site scripting (XSS) vulnerability in Florian Amrhein NewsPortal before 0.37, and possibly TR Newsportal (TRanx rebuilded), allows remote attackers to inject arbitrary web script or HTML via unknown vectors.    5.8  Medium  2016-12-20  2011-03-07  View
61763  CVE-2006-3080  Cross-site scripting (XSS) vulnerability in viewposts.cfm in aXentForum II and earlier allows remote attackers to inject arbitrary web script or HTML via the startrow parameter.    4.3  Medium  2016-12-20  2011-03-07  View
63555  CVE-2006-4947  Cross-site scripting (XSS) vulnerability in the Drupal 4.7 Search Keywords module before 1.15 2006/09/15 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to "lack of validation on output."    6.8  Medium  2016-12-20  2011-03-07  View
63811  CVE-2006-5205  Directory traversal vulnerability in Invision Gallery 2.0.7 allows remote attackers to read arbitrary files via a .. (dot dot) sequence in the dir parameter in (1) index.php and (2) forum/index.php, when the viewimage command in the gallery module is used.    Medium  2016-12-20  2011-03-07  View

Page 2444 of 17672, showing 5 records out of 88360 total, starting on record 12216, ending on 12220

Actions