NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
65508 | CVE-2006-6965 | CRLF injection vulnerability in lib/exe/fetch.php in DokuWiki 2006-03-09e, and possibly earlier, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the media parameter. NOTE: this issue can be leveraged for XSS attacks. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
65765 | CVE-2006-7222 | Buffer overflow in the CFLICStream::_deltachunk function in FLICSource.cpp in Media Player Classic (MPC) 6.4.9.0 allows user-assisted remote attackers to execute arbitrary code via a crafted FLI file. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
70629 | CVE-2004-0173 | Directory traversal vulnerability in Apache 1.3.29 and earlier, and Apache 2.0.48 and earlier, when running on Cygwin, allows remote attackers to read arbitrary files via a URL containing "..%5C" (dot dot encoded backslash) sequences. | 2 | 5 | Medium | 2016-12-20 | 2016-10-17 | View | |
58853 | CVE-2006-0113 | Enhanced Simple PHP Gallery 1.7 allows remote attackers to obtain the full path of the application via a direct request to sp_helper_functions.php, which leaks the pathname in an error message. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
59109 | CVE-2006-0370 | Noah Medling RCBlog 1.03 stores the data and config directories under the web root with insufficient access control, which allows remote attackers to view account names and MD5 password hashes. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 1345 of 17672, showing 5 records out of 88360 total, starting on record 6721, ending on 6725