NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63768 | CVE-2006-5162 | wininet.dll in Microsoft Internet Explorer 6.0 SP2 and earlier allows remote attackers to cause a denial of service (unhandled exception and crash) via a long Content-Type header, which triggers a stack overflow. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
64280 | CVE-2006-5705 | Multiple directory traversal vulnerabilities in plugins/wp-db-backup.php in WordPress before 2.0.5 allow remote authenticated users to read or overwrite arbitrary files via directory traversal sequences in the (1) backup and (2) fragment parameters in a GET request. | 2 | 6 | Medium | 2016-12-20 | 2011-03-07 | View | |
64792 | CVE-2006-6231 | vuBB 0.2.1 and earlier allows remote attackers to obtain sensitive information via a direct request to includes/vubb.php, which leaks the path in an error message. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
65048 | CVE-2006-6503 | Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to bypass cross-site scripting (XSS) protection by changing the src attribute of an IMG element to a javascript: URI. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
66073 | CVE-2005-0310 | Exponent 0.95 allows remote attackers to obtain sensitive information via a direct HTTP request to (1) search.info.php, (2) permissions.info.php, (3) security.info.php, (4) formcontrol.php, or (5) file_modules.php, which reveals the path in an error message because the pathos_core_version variable is undefined. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 898 of 17672, showing 5 records out of 88360 total, starting on record 4486, ending on 4490