NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64567 | CVE-2006-5994 | Unspecified vulnerability in Microsoft Word 2000 and 2002, Office Word and Word Viewer 2003, Word 2004 and 2004 v. X for Mac, and Works 2004, 2005, and 2006 allows remote attackers to execute arbitrary code via a Word document with a malformed string that triggers memory corruption, a different vulnerability than CVE-2006-6456. | 2 | 9.3 | High | 2016-12-20 | 2011-03-07 | View | |
64823 | CVE-2006-6262 | Directory traversal vulnerability in mboard.php in PHPJunkYard (aka Klemen Stirn) MBoard 1.22 and earlier allows remote attackers to create arbitrary empty files via a .. (dot dot) in the orig_id parameter. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
65079 | CVE-2006-6534 | Multiple cross-site scripting (XSS) vulnerabilities in osCommerce 3.0a3 allow remote attackers to inject arbitrary web script or HTML via the (1) set parameter to admin/modules.php, the (2) selected_box parameter to definitiva/admin/customers.php, the (3) lID parameter to admin/languages_definitions.php, or the (4) pID parameter to admin/products.php. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
65335 | CVE-2006-6791 | SQL injection vulnerability in SelGruFra.asp in chatwm 1.0 allows remote attackers to execute arbitrary SQL commands via the (1) txtUse and (2) txtPas parameters. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65592 | CVE-2006-7049 | The Method method in WikkaWiki (Wikka Wiki) before 1.1.6.2 calls the strstr and strrpos functions with the wrong argument order, which allows remote attackers to bypass intended access restrictions and access arbitrary PHP files. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 317 of 17672, showing 5 records out of 88360 total, starting on record 1581, ending on 1585