NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64923 | CVE-2006-6377 | Uploadscript 1.2 and earlier stores sensitive data under the web root with insufficient access control, which allows remote attackers to obtain the admin password hash via a direct request for /password.txt. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65179 | CVE-2006-6635 | PHP remote file inclusion vulnerability in includes/functions.php in JumbaCMS 0.0.1 allows remote attackers to execute arbitrary PHP code via a URL in the jcms_root_path parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65435 | CVE-2006-6892 | Cross-site scripting (XSS) vulnerability in the GetLocation function in online.php in Jonathon J. Freeman OvBB 0.13a allows remote attackers to inject arbitrary web script or HTML via the aRequest variable. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
65692 | CVE-2006-7149 | Multiple cross-site scripting (XSS) vulnerabilities in Mambo 4.6.x allow remote attackers to inject arbitrary web script or HTML via (1) the query string to (a) index.php, which reflects the string in an error message from mod_login.php; and the (2) mcname parameter to (b) moscomment.php and (c) com_comment.php. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
70556 | CVE-2004-0088 | The System Configuration subsystem in Mac OS 10.2.8 allows local users to modify network settings, a different vulnerability than CVE-2004-0087. | 2 | 2.1 | Low | 2016-12-20 | 2008-09-10 | View |
Page 909 of 17672, showing 5 records out of 88360 total, starting on record 4541, ending on 4545