NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59952  CVE-2006-1238  SQL injection vulnerability in DSLogin 1.0, with magic_quotes_gpc disabled, allows remote attackers to execute arbitrary SQL commands and bypass authentication via the $log_userid variable in (1) index.php and (2) admin/index.php.    5.1  Medium  2016-12-20  2011-03-07  View
60208  CVE-2006-1499  SQL injection vulnerability in vCounter.php in vCounter 1.0 allows remote attackers to execute arbitrary SQL commands via the URI (_SERVER[REQUEST_URI] variable).    7.5  High  2016-12-20  2011-03-07  View
60464  CVE-2006-1759  Cross-site scripting (XSS) vulnerability in allgemein_transfer.php in SWSoft Confixx 3.1.2 allows remote attackers to inject arbitrary web script or HTML via the jahr parameter.    2.6  Low  2016-12-20  2011-03-07  View
60720  CVE-2006-2015  Cross-site scripting (XSS) vulnerability in SL_site 1.0 allows remote attackers to inject arbitrary web script or HTML via the recherche parameter in recherche.php. NOTE: other XSS vectors, as reported in the original disclosure, are resultant from other primary vulnerabilities that have separate CVE names.    2.6  Low  2016-12-20  2011-03-07  View
60976  CVE-2006-2273  The InstallProduct routine in the Verisign VUpdater.Install (aka i-Nav) ActiveX control does not verify Microsoft Cabinet (.CAB) files, which allows remote attackers to run an arbitrary executable file.    9.3  High  2016-12-20  2011-03-07  View

Page 3318 of 17672, showing 5 records out of 88360 total, starting on record 16586, ending on 16590

Actions