NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59181 | CVE-2006-0443 | Cross-site scripting (XSS) vulnerability in archive.php in CheesyBlog 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) realname and (2) comment parameters, or (3) via a javascript URI in the url parameter, when adding a comment. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
59437 | CVE-2006-0706 | Cross-site scripting vulnerability in eintrag.php in Gästebuch (Gastebuch) before 1.3.3 allows remote attackers to inject arbitrary web script or HTML via the URL, which is used in the homepage parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2016-10-17 | View | |
59693 | CVE-2006-0970 | PHP remote file inclusion vulnerability in index.php in one or more ActiveCampaign products, possibly SupportTrio, allows remote attackers to include and execute arbitrary files via the page parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
59949 | CVE-2006-1235 | Directory traversal vulnerability in admin/deleteuser.php in HitHost 1.0.0 might allow remote attackers to delete directories (possibly only empty directories) via the $deleteuser variable. NOTE: the initial disclosure for this issue indicated that the researcher was unable to prove this issue; however, this might have been due to certain behaviors of rmdir. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
60205 | CVE-2006-1496 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in ViHor Design allow remote attackers to inject arbitrary web script or HTML via (1) a remote URL in the page parameter, which is processed by an fopen call, or (2) HTML or script in the page parameter, which is returned to the client in an error message for the failed fopen call. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 255 of 17672, showing 5 records out of 88360 total, starting on record 1271, ending on 1275