NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61449 | CVE-2006-2764 | Cross-site scripting (XSS) vulnerability in GuestbookXL 1.3 allows remote attackers to inject arbitrary web script or HTML via a javascript URI in an IMG tag in a comment field to (1) guestwrite.php or (2) guestbook.php. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
61705 | CVE-2006-3021 | Multiple cross-site scripting (XSS) vulnerabilities in BlueCollar i-Gallery 4.1 PLUS and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) n and (2) d parameters in (a) login.asp and the d parameter in (b) igallery.asp. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61961 | CVE-2006-3282 | requirements.php in Dating Agent PRO 4.7.1 allows remote attackers to obtain sensitive information via a direct request, which calls the phpinfo function. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
62217 | CVE-2006-3543 | ** DISPUTED ** Multiple SQL injection vulnerabilities in Invision Power Board (IPB) 1.x and 2.x allow remote attackers to execute arbitrary SQL commands via the (1) idcat and (2) code parameters in a ketqua action in index.php; the id parameter in a (3) Attach and (4) ref action in index.php; the CODE parameter in a (5) Profile, (6) Login, and (7) Help action in index.php; and the (8) member_id parameter in coins_list.php. NOTE: the developer has disputed this issue, stating that the "CODE attribute is never present in an SQL query" and the ""ketqua" [action] and file "coin_list.php" are not standard IPB 2.x features". It is unknown whether these vectors are associated with an independent module or modification of IPB. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
62473 | CVE-2006-3805 | The Javascript engine in Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 might allow remote attackers to execute arbitrary code via vectors involving garbage collection that causes deletion of a temporary object that is still being used. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 597 of 17672, showing 5 records out of 88360 total, starting on record 2981, ending on 2985