NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61089 | CVE-2006-2390 | Cross-site scripting (XSS) vulnerability in OZJournals 1.2 allows remote attackers to inject arbitrary web script or HTML via the vname parameter in the comments functionality. | 2 | 5.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61345 | CVE-2006-2660 | Buffer consumption vulnerability in the tempnam function in PHP 5.1.4 and 4.x before 4.4.3 allows local users to bypass restrictions and create PHP files with fixed names in other directories via a pathname argument longer than MAXPATHLEN, which prevents a unique string from being appended to the filename. | 2 | 2.1 | Low | 2016-12-20 | 2010-04-02 | View | |
61601 | CVE-2006-2917 | Directory traversal vulnerability in the IMAP server in WinGate 6.1.2.1094 and 6.1.3.1096, and possibly other versions before 6.1.4 Build 1099, allows remote authenticated users to read email of other users, or perform unauthorized operations on directories, via the (1) CREATE, (2) SELECT, (3) DELETE, (4) RENAME, (5) COPY, (6) APPEND, and (7) LIST commands. | 2 | 5.5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61857 | CVE-2006-3178 | Directory traversal vulnerability in extract_chmLib example program in CHM Lib (chmlib) before 0.38 allows remote attackers to overwrite arbitrary files via a CHM archive containing files with a .. (dot dot) in their filename. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
62113 | CVE-2006-3436 | Cross-site scripting (XSS) vulnerability in Microsoft .NET Framework 2.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving "ASP.NET controls that set the AutoPostBack property to true". | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 943 of 17672, showing 5 records out of 88360 total, starting on record 4711, ending on 4715