NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62611 | CVE-2006-3953 | Cross-site scripting (XSS) vulnerability in usercp.php in MyBB (aka MyBulletinBoard) 1.x allows remote attackers to inject arbitrary web script or HTML via the gallery parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
63635 | CVE-2006-5029 | SQL injection vulnerability in thread.php in WoltLab Burning Board (wBB) 2.3.x allows remote attackers to obtain the version numbers of PHP, MySQL, and wBB via the page parameter. NOTE: this issue might be a forced SQL error. Also, the original report was disputed by a third party for 2.3.3 and 2.3.4. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63891 | CVE-2006-5288 | Cisco 2700 Series Wireless Location Appliances before 2.1.34.0 have a default administrator username "root" and password "password," which allows remote attackers to obtain administrative privileges, aka Bug ID CSCsb92893. | 2 | 10 | High | 2016-12-20 | 2008-09-05 | View | |
65427 | CVE-2006-6884 | Buffer overflow in the WZFILEVIEW.FileViewCtrl.61 ActiveX control (aka Sky Software "FileView" ActiveX control) for WinZip 10.0 Build 6667 allows remote attackers to execute arbitrary code via a long argument to the CreateNewFolderFromName method, a different vulnerability than CVE-2006-5198. | 2 | 9.3 | High | 2016-12-20 | 2008-09-05 | View | |
148 | CVE-2008-0158 | Directory traversal vulnerability in index.php in Shop-Script 2.0 and possibly other versions allows remote attackers to read arbitrary files via a .. (dot dot) in the aux_page parameter. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 989 of 17672, showing 5 records out of 88360 total, starting on record 4941, ending on 4945