NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60529 | CVE-2006-1824 | Multiple cross-site scripting (XSS) vulnerabilities in PhpGuestbook.php in PhpGuestbook 1.0 allow remote attackers to inject arbitrary web script or HTML via the (1) Name, (2) Website, and (3) Comment parameter. | 2 | 1.2 | Low | 2016-12-20 | 2011-03-07 | View | |
60785 | CVE-2006-2080 | SQL injection vulnerability in portfolio_photo_popup.php in Verosky Media Instant Photo Gallery 1.0.2 allows remote attackers to execute arbitrary SQL commands via the id parameter, which is not cleansed before calling the count_click function in includes/functions/fns_std.php. NOTE: this issue could produce resultant XSS. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61041 | CVE-2006-2339 | SQL injection vulnerability in index.php in evoTopsites 2.x and evoTopsites Pro 2.x allows remote attackers to execute arbitrary SQL commands via the (1) cat_id and (2) id parameters. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
61297 | CVE-2006-2602 | ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-2590. Reason: This candidate is a duplicate of CVE-2006-2590. Notes: All CVE users should reference CVE-2006-2590 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage. | 1 | 2016-12-20 | 2008-09-10 | View | |||
61553 | CVE-2006-2868 | Multiple PHP remote file inclusion vulnerabilities in Claroline 1.7.6 allow remote attackers to execute arbitrary PHP code via a URL in the includePath cookie to (1) auth/extauth/drivers/mambo.inc.php or (2) auth/extauth/drivers/postnuke.inc.php. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 654 of 17672, showing 5 records out of 88360 total, starting on record 3266, ending on 3270