NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59149  CVE-2006-0411  claro_init_local.inc.php in Claroline 1.7.2 uses guessable session cookies (MD5 hash of connection time), which allows remote attackers to hijack sessions and possibly gain administrative privileges.    10  High  2016-12-20  2011-03-07  View
59150  CVE-2006-0412  SQL injection vulnerability in CyberShop allows remote attackers to execute arbitrary SQL commands and bypass authentication via the username parameter in a login action.    7.5  High  2016-12-20  2012-08-06  View
59151  CVE-2006-0413  Multiple SQL injection vulnerabilities in index.php in NewsPHP allow remote attackers to execute arbitrary SQL commands via the (1) discuss, (2) tim, (3) id, (4) last, and (5) limit parameter.    7.5  High  2016-12-20  2011-09-08  View
59152  CVE-2006-0414  Tor before 0.1.1.20 allows remote attackers to identify hidden services via a malicious Tor server that attempts a large number of accesses of the hidden service, which eventually causes a circuit to be built through the malicious server.    Medium  2016-12-20  2008-09-05  View
59153  CVE-2006-0415  Cross-site scripting (XSS) vulnerability in index.php in SleeperChat 0.3f and earlier allows remote attackers to inject arbitrary web script or HTML via the pseudo parameter.    4.3  Medium  2016-12-20  2008-09-05  View

Page 3201 of 17672, showing 5 records out of 88360 total, starting on record 16001, ending on 16005

Actions