NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 60995 | CVE-2006-2292 | Multiple SQL injection vulnerabilities in IA-Calendar allow remote attackers to execute arbitrary SQL commands via the (1) type parameter in (a) calendar_new.asp and (b) default.asp, and (2) ID parameter in (c) calendar_detail.asp. NOTE: the provenance of this information is unknown; the details are obtained from third party information. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 61251 | CVE-2006-2556 | Cross-site scripting (XSS) vulnerability in Florian Amrhein NewsPortal before 0.37, and possibly TR Newsportal (TRanx rebuilded), allows remote attackers to inject arbitrary web script or HTML via unknown vectors. | 2 | 5.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 61763 | CVE-2006-3080 | Cross-site scripting (XSS) vulnerability in viewposts.cfm in aXentForum II and earlier allows remote attackers to inject arbitrary web script or HTML via the startrow parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 63555 | CVE-2006-4947 | Cross-site scripting (XSS) vulnerability in the Drupal 4.7 Search Keywords module before 1.15 2006/09/15 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to "lack of validation on output." | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 63811 | CVE-2006-5205 | Directory traversal vulnerability in Invision Gallery 2.0.7 allows remote attackers to read arbitrary files via a .. (dot dot) sequence in the dir parameter in (1) index.php and (2) forum/index.php, when the viewimage command in the gallery module is used. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 2444 of 17672, showing 5 records out of 88360 total, starting on record 12216, ending on 12220