NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63809 | CVE-2006-5203 | Invision Power Board (IPB) 2.1.7 and earlier allows remote restricted administrators to inject arbitrary web script or HTML, or execute arbitrary SQL commands, via a forum description that contains a crafted image with PHP code, which is executed when the user visits the "Manage Forums" link in the Admin control panel. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
64065 | CVE-2006-5464 | Multiple unspecified vulnerabilities in the layout engine in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey before 1.0.6 allow remote attackers to cause a denial of service (crash) via unspecified vectors. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
64321 | CVE-2006-5746 | The console in AirMagnet Enterprise before 7.5 build 6307 does not properly validate the Enterprise Server certificate, which allows remote attackers to read network traffic via a man-in-the-middle (MITM) attack, possibly related to the use of self-signed certificates. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
64577 | CVE-2006-6016 | wp-admin/user-edit.php in WordPress before 2.0.5 allows remote authenticated users to read the metadata of an arbitrary user via a modified user_id parameter. | 2 | 4 | Medium | 2016-12-20 | 2008-09-05 | View | |
64833 | CVE-2006-6272 | Cross-site scripting (XSS) vulnerability in sp_index.php in Simple PHP Gallery 1.1 allows remote attackers to inject arbitrary web script or HTML via the dir parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 375 of 17672, showing 5 records out of 88360 total, starting on record 1871, ending on 1875