NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
61505  CVE-2006-2820  Cross-site scripting (XSS) vulnerability in HotWebScripts.com Weblog Oggi 1.0 allows remote attackers to inject arbitrary web script or HTML via a comment, possibly involving a javascript URI in the SRC attribute of an IMG element.    4.3  Medium  2016-12-20  2008-09-05  View
62273  CVE-2006-3599  SQL injection vulnerability in the Nuke Advanced Classifieds module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the id_ads parameter in an EditAds op.    7.5  High  2016-12-20  2008-09-05  View
63809  CVE-2006-5203  Invision Power Board (IPB) 2.1.7 and earlier allows remote restricted administrators to inject arbitrary web script or HTML, or execute arbitrary SQL commands, via a forum description that contains a crafted image with PHP code, which is executed when the user visits the "Manage Forums" link in the Admin control panel.    5.1  Medium  2016-12-20  2008-09-05  View
64321  CVE-2006-5746  The console in AirMagnet Enterprise before 7.5 build 6307 does not properly validate the Enterprise Server certificate, which allows remote attackers to read network traffic via a man-in-the-middle (MITM) attack, possibly related to the use of self-signed certificates.    6.4  Medium  2016-12-20  2008-09-05  View
64577  CVE-2006-6016  wp-admin/user-edit.php in WordPress before 2.0.5 allows remote authenticated users to read the metadata of an arbitrary user via a modified user_id parameter.    Medium  2016-12-20  2008-09-05  View

Page 415 of 17672, showing 5 records out of 88360 total, starting on record 2071, ending on 2075

Actions