NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
58368  CVE-2007-6373  Multiple SQL injection vulnerabilities in GestDown 1.00 Beta allow remote attackers to execute arbitrary SQL commands via the (1) categorie parameter to catdownload.php, or the id parameter to (2) download.php or (3) hitcounter.php.    7.5  High  2017-01-07  2008-09-05  View
59648  CVE-2006-0921  Multiple directory traversal vulnerabilities in connector.php in FCKeditor 2.0 FC, as used in products such as RunCMS, allow remote attackers to list and create arbitrary directories via a .. (dot dot) in the CurrentFolder parameter to (1) GetFoldersAndFiles and (2) CreateFolder.    6.4  Medium  2016-12-20  2008-09-05  View
61440  CVE-2006-2755  Cross-site scripting (XSS) vulnerability in index.php in UBBThreads 5.x and earlier allows remote attackers to inject arbitrary web script or HTML via the debug parameter, as demonstrated by stealing MD5 hashes of passwords.    4.3  Medium  2016-12-20  2008-09-05  View
61952  CVE-2006-3273  Cross-site scripting (XSS) vulnerability in menu.php in Some Chess 1.5 rc1 allows remote attackers to inject arbitrary web script or HTML via the user parameter ("New Name" field).    2.6  Low  2016-12-20  2008-09-05  View
62464  CVE-2006-3796  DeluxeBB 1.07 and earlier does not properly handle a username composed of a single space character, which allows remote authenticated users to login as the "space" user, post as the guest user, and block the ability of an administrator to ban the "space" user.    7.5  High  2016-12-20  2008-09-05  View

Page 34 of 17672, showing 5 records out of 88360 total, starting on record 166, ending on 170

Actions