NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 63557 | CVE-2006-4949 | Cross-site scripting (XSS) vulnerability in the Drupal 4.6 Site Profile Directory (profile_pages.module) before 1.1.2.1 and the Drupal 4.7 Site Profile Directory (profile_pages.module) before 1.2.2.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to "lack of validation on output," possibly in the name and title parameters. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 63813 | CVE-2006-5207 | PHP remote file inclusion vulnerability in images/smileys/smileys_packs.php in phpMyTeam 2.0, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the smileys_dir parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 64069 | CVE-2006-5468 | Unspecified vulnerability in the HTTP dissector in Wireshark (formerly Ethereal) 0.99.3 allows remote attackers to cause a denial of service (crash) via unspecified vectors. | 2 | 5 | Medium | 2016-12-20 | 2012-08-13 | View | |
| 64581 | CVE-2006-6020 | Cross-site scripting (XSS) vulnerability in announce.php in Blog Torrent Preview 0.92 allows remote attackers to inject arbitrary web script or HTML via the left parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 64837 | CVE-2006-6276 | HTTP request smuggling vulnerability in Sun Java System Proxy Server before 20061130, when used with Sun Java System Application Server or Sun Java System Web Server, allows remote attackers to bypass HTTP request filtering, hijack web sessions, perform cross-site scripting (XSS), and poison web caches via unspecified attack vectors. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 2520 of 17672, showing 5 records out of 88360 total, starting on record 12596, ending on 12600