NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64646 | CVE-2006-6085 | Kile before 1.9.3 does not assign a backup file the same permissions as the original file, which might allow local users to obtain sensitive information. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
64902 | CVE-2006-6356 | Multiple cross-site scripting (XSS) vulnerabilities in templates/link_temp.php in PHPNews 1.3.0 allow remote attackers to inject arbitrary web script or HTML via the (1) url, (2) id, (3) subject, (4) username, or (5) time parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2016-12-06 | View | |
65158 | CVE-2006-6614 | The save_log_local function in Fully Automatic Installation (FAI) 2.10.1, and possibly 3.1.2, when verbose mode is enabled, stores the root password hash in /var/log/fai/current/fai.log, whose file permissions allow it to be copied to other hosts when fai-savelog is called and allows attackers to obtain the hash. | 2 | 1.9 | Low | 2016-12-20 | 2011-03-07 | View | |
65414 | CVE-2006-6871 | Multiple cross-site scripting (XSS) vulnerabilities in eNdonesia 8.4 allow remote attackers to inject arbitrary web script or HTML via (1) the mod parameter in a viewlink operation in mod.php, (2) the intypeid parameter in a showinfo operation in the informasi module in mod.php, (3) the "your Friend" field in friend.php, or (4) the "Main Text" field in admin.php. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
65671 | CVE-2006-7128 | PHP remote file inclusion vulnerability in forum/forum.php JAF CMS 4.0 RC1 allows remote attackers to execute arbitrary PHP code via a URL in the website parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 782 of 17672, showing 5 records out of 88360 total, starting on record 3906, ending on 3910