NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59322 | CVE-2006-0587 | Unspecified vulnerability in util.php in Gallery before 1.5.2-pl2 allows remote authenticated users with trick an owner into modifying stored album data and possibly executing arbitrary code via unspecified vectors involving a crafted link to a crafted file. | 2 | 6.5 | Medium | 2016-12-20 | 2008-09-05 | View | |
59578 | CVE-2006-0848 | The "Open "safe" files after downloading" option in Safari on Apple Mac OS X allows remote user-assisted attackers to execute arbitrary commands by tricking a user into downloading a __MACOSX folder that contains metadata (resource fork) that invokes the Terminal, which automatically interprets the script using bash, as demonstrated using a ZIP file that contains a script with a safe file extension. | 2 | 5.1 | Medium | 2016-12-20 | 2013-08-18 | View | |
59834 | CVE-2006-1112 | Aztek Forum 4.0 allows remote attackers to obtain sensitive information via a long login value in a register form, which displays the installation path in a MySQL error message. | 2 | 5 | Medium | 2016-12-20 | 2008-09-10 | View | |
60090 | CVE-2006-1381 | Trend Micro OfficeScan 5.5, and probably other versions before 6.5, uses insecure DACLs for critical files, which allows local users to gain SYSTEM privileges by modifying tmlisten.exe. | 2 | 10 | High | 2016-12-20 | 2011-03-07 | View | |
60346 | CVE-2006-1641 | Multiple SQL injection vulnerabilities in CzarNews 1.14 allow remote attackers to execute arbitrary SQL commands via the (1) usern or (2) passw parameters to (a) cn_auth.php, (3) s parameter to (b) news.php, or (4) a parameter to (c) dpost.php. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 1091 of 17672, showing 5 records out of 88360 total, starting on record 5451, ending on 5455