NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60829 | CVE-2006-2124 | Multiple cross-site scripting (XSS) vulnerabilities in SunShop 3.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) prevaction, (2) previd, (3) prevstart, (4) itemid, (5) id, and (6) action parameters in index.php. | 2 | 5.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61085 | CVE-2006-2386 | Unspecified vulnerability in Microsoft Outlook Express 6 and earlier allows remote attackers to execute arbitrary code via a crafted contact record in a Windows Address Book (WAB) file. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61341 | CVE-2006-2656 | Stack-based buffer overflow in the tiffsplit command in libtiff 3.8.2 and earlier might might allow attackers to execute arbitrary code via a long filename. NOTE: tiffsplit is not setuid. If there is not a common scenario under which tiffsplit is called with attacker-controlled command line arguments, then perhaps this issue should not be included in CVE. | 2 | 7.5 | High | 2016-12-20 | 2016-10-17 | View | |
61597 | CVE-2006-2913 | Cross-site scripting (XSS) vulnerability in SelectaPix 1.31 allows remote attackers to inject arbitrary web script or HTML via the albumID parameter to (1) popup.php and (2) view_album.php. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
61853 | CVE-2006-3174 | Cross-site scripting (XSS) vulnerability in search.php in SquirrelMail 1.5.1 and earlier, when register_globals is enabled, allows remote attackers to inject arbitrary HTML via the mailbox parameter. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View |
Page 918 of 17672, showing 5 records out of 88360 total, starting on record 4586, ending on 4590