NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62492 | CVE-2006-3824 | systeminfo.c for Sun Solaris allows local users to read kernel memory via a 0 variable count argument to the sysinfo system call, which causes a -1 argument to be used by the copyout function. NOTE: this issue has been referred to as an integer overflow, but it is probably more like a signedness error or integer underflow. | 2 | 4.9 | Medium | 2016-12-20 | 2011-03-07 | View | |
62748 | CVE-2006-4091 | Multiple cross-site scripting (XSS) vulnerabilities in Archangel Management Archangel Weblog 0.90.02 allow remote attackers to inject arbitrary web script or HTML via the (1) Name or (2) Comment section. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
63260 | CVE-2006-4627 | System Information ActiveX control (msinfo.dll), when accessed via Microsoft Internet Explorer, allows remote attackers to cause a denial of service (crash) via a SaveFile function with a long (1) computer and possibly (2) filename and (3) category argument. | 2 | 5 | Medium | 2016-12-20 | 2008-09-10 | View | |
63516 | CVE-2006-4900 | Directory traversal vulnerability in Computer Associates (CA) eTrust Security Command Center 1.0 and r8 up to SP1 CR2, allows remote authenticated users to read and delete arbitrary files via ".." sequences in the eSCCAdHocHtmlFile parameter to eSMPAuditServlet, which is not properly handled by the getadhochtml function. | 2 | 5.5 | Medium | 2016-12-20 | 2011-03-07 | View | |
64028 | CVE-2006-5427 | PHP remote file inclusion vulnerability in plugins/main.php in Php AMX 0.9.0, when register_globals is enabled or magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary PHP code via a URL in the plug_path parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 1044 of 17672, showing 5 records out of 88360 total, starting on record 5216, ending on 5220