NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 61744 | CVE-2006-3061 | Multiple cross-site scripting (XSS) vulnerabilities in 5 Star Review allow remote attackers to inject arbitrary web script or HTML via the (1) sort parameter in index2.php, (2) item_id parameter in report.php, (3) search_term parameter (aka the "search box") in search_reviews.php, (4) the profile field in usercp/profile_edit1.php, and the (5) review field in review_form.php. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
| 62000 | CVE-2006-3322 | SQL injection vulnerability in includes/functions_logging.php in phpRaid 3.0.5, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the log_hack function. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 62256 | CVE-2006-3582 | Multiple heap-based buffer overflows in Audacious AdPlug 2.0 and earlier allow remote user-assisted attackers to execute arbitrary code via the size specified in the package header of (1) CFF, (2) MTK, (3) DMO, and (4) U6M files. | 2 | 5.1 | Medium | 2016-12-20 | 2011-09-06 | View | |
| 62512 | CVE-2006-3845 | Stack-based buffer overflow in lzh.fmt in WinRAR 3.00 through 3.60 beta 6 allows remote attackers to execute arbitrary code via a long filename in a LHA archive. | 2 | 9.3 | High | 2016-12-20 | 2011-03-07 | View | |
| 62768 | CVE-2006-4114 | SQL injection vulnerability in view_com.php in Nicolas Grandjean PHPMyRing 4.2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the idsite parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 2944 of 17672, showing 5 records out of 88360 total, starting on record 14716, ending on 14720