NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 61524 | CVE-2006-2839 | Directory traversal vulnerability in PG Problem Editor module (PGProblemEditor.pm) in WeBWorK Online Homework Delivery System 2.2.0 and earlier allows remote attackers to read and write files outside of the templates directory. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 61780 | CVE-2006-3097 | Unspecified vulnerability in Support Tools Manager (xstm, cstm, and stm) on HP-UX B.11.11 and B.11.23 allows local users to cause an unspecified denial of service via unknown vectors. | 2 | 4.9 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 62036 | CVE-2006-3358 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in NewsPHP 2006 PRO allow remote attackers to inject arbitrary web script or HTML via the (1) words, (2) id, (3) cat_id, and (4) tim parameters, which are not sanitized before being returned in an error page. NOTE: it is possible that some of these vectors are resultant from an SQL injection issue. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 62804 | CVE-2006-4157 | Cross-site scripting (XSS) vulnerability in index.php in Yet another Bulletin Board (YaBB) allows remote attackers to inject arbitrary web script or HTML via the categories parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 63060 | CVE-2006-4425 | Multiple PHP remote file inclusion vulnerabilities in phpCOIN 1.2.3 allow remote attackers to execute arbitrary PHP code via the _CCFG[_PKG_PATH_INCL] parameter in coin_includes scripts including (1) api.php, (2) common.php, (3) core.php, (4) custom.php, (5) db.php, (6) redirect.php or (7) session_set.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 3045 of 17672, showing 5 records out of 88360 total, starting on record 15221, ending on 15225