NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64596  CVE-2006-6035  Cross-site scripting (XSS) vulnerability in list.php in BLOG:CMS 4.1.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the FADDR parameter.    6.8  Medium  2016-12-20  2016-11-18  View
64852  CVE-2006-6291  Stack overflow in the IMAP module (MEIMAPS.EXE) in MailEnable Professional 1.6 through 1.83 and 2.0 through 2.33, and MailEnable Enterprise 1.1 through 1.40 and 2.0 through 2.33, allows remote authenticated users to cause a denial of service (crash) via a long argument containing * (asterisk) and ? (question mark) characters to the DELETE command, as addressed by the ME-10020 hotfix.    6.8  Medium  2016-12-20  2011-08-04  View
65108  CVE-2006-6564  FileZilla Server before 0.9.22 allows remote attackers to cause a denial of service (crash) via a malformed argument to the STOR command, which results in a NULL pointer dereference. NOTE: CVE analysis suggests that the problem might be due to a malformed PORT command.    Medium  2016-12-20  2011-03-07  View
65364  CVE-2006-6821  myprofile.asp in Enthrallweb eNews does not properly validate the MM_recordId parameter during profile updates, which allows remote authenticated users to modify certain profile fields of another account by specifying that account"s username in a modified MM_recordId parameter.    3.5  Low  2016-12-20  2011-03-07  View
65621  CVE-2006-7078  Multiple cross-site scripting (XSS) vulnerabilities in Professional Home Page Tools Login Script, as of July 2006, allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) vorname, and (3) nachname parameters in the register script. NOTE: some details have been obtained from third party sources.    4.3  Medium  2016-12-20  2011-03-07  View

Page 487 of 17672, showing 5 records out of 88360 total, starting on record 2431, ending on 2435

Actions