NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
58368 | CVE-2007-6373 | Multiple SQL injection vulnerabilities in GestDown 1.00 Beta allow remote attackers to execute arbitrary SQL commands via the (1) categorie parameter to catdownload.php, or the id parameter to (2) download.php or (3) hitcounter.php. | 2 | 7.5 | High | 2017-01-07 | 2008-09-05 | View | |
59648 | CVE-2006-0921 | Multiple directory traversal vulnerabilities in connector.php in FCKeditor 2.0 FC, as used in products such as RunCMS, allow remote attackers to list and create arbitrary directories via a .. (dot dot) in the CurrentFolder parameter to (1) GetFoldersAndFiles and (2) CreateFolder. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
61440 | CVE-2006-2755 | Cross-site scripting (XSS) vulnerability in index.php in UBBThreads 5.x and earlier allows remote attackers to inject arbitrary web script or HTML via the debug parameter, as demonstrated by stealing MD5 hashes of passwords. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
61952 | CVE-2006-3273 | Cross-site scripting (XSS) vulnerability in menu.php in Some Chess 1.5 rc1 allows remote attackers to inject arbitrary web script or HTML via the user parameter ("New Name" field). | 2 | 2.6 | Low | 2016-12-20 | 2008-09-05 | View | |
62464 | CVE-2006-3796 | DeluxeBB 1.07 and earlier does not properly handle a username composed of a single space character, which allows remote authenticated users to login as the "space" user, post as the guest user, and block the ability of an administrator to ban the "space" user. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 34 of 17672, showing 5 records out of 88360 total, starting on record 166, ending on 170