NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64888 | CVE-2006-6342 | Multiple SQL injection vulnerabilities in KLF-DESIGN (aka Kim L. Fraser) KLF-REALTY allow remote attackers to execute arbitrary SQL commands via the (1) category and (2) agent parameters in (a) search_listing.asp, and the (3) property_id parameter in (b) detail.asp. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
65144 | CVE-2006-6600 | Cross-site scripting (XSS) vulnerability in dir.php in TorrentFlux 2.2, when allows remote attackers to inject arbitrary web script or HTML via double URL-encoded strings in the dir parameter, a related issue to CVE-2006-5609. | 2 | 6 | Medium | 2016-12-20 | 2008-09-05 | View | |
65400 | CVE-2006-6857 | Cross-site scripting (XSS) vulnerability in modules/credits/credits.php in Docebo LMS allows remote attackers to inject arbitrary web script or HTML via the lang parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
65657 | CVE-2006-7114 | P-News 2.0 stores db/user.txt under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as usernames and password hashes via a direct request. NOTE: this might be the same issue as CVE-2006-6888. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
71545 | CVE-2004-1155 | Internet Explorer 5.01 through 6 allows remote attackers to spoof arbitrary web sites by injecting content from one window into another window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability. NOTE: later research shows that Internet Explorer 7 on Windows XP SP2 is also vulnerable. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 699 of 17672, showing 5 records out of 88360 total, starting on record 3491, ending on 3495