NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64531  CVE-2006-5956  XLineSoft PHPRunner 3.1 stores the (1) database server name, (2) database names, (3) usernames, and (4) passwords in plaintext in %WINDIR%PHPRunner.ini, which allows local users to obtain sensitive information by reading the file.    2.1  Low  2016-12-20  2008-09-05  View
64787  CVE-2006-6226  Multiple format string vulnerabilities in NeoEngine 0.8.2 and earlier, and CVS 3422, allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) Console::Render in neoengine/console.cpp and (2) TextArea::Render in neowtk/textarea.cpp.    7.5  High  2016-12-20  2008-09-05  View
65556  CVE-2006-7013  ** DISPUTED ** QueryString.php in Simple Machines Forum (SMF) 1.0.7 and earlier, and 1.1rc2 and earlier, allows remote attackers to more easily spoof the IP address and evade banning via a modified X-Forwarded-For HTTP header, which is preferred instead of other more reliable sources for the IP address. NOTE: the original researcher claims that the vendor has disputed this issue.    7.5  High  2016-12-20  2008-09-05  View
276  CVE-2008-0291  SQL injection vulnerability in showproduct.asp in RichStrong CMS allows remote attackers to execute arbitrary SQL commands via the cat parameter.    7.5  High  2017-01-03  2008-09-05  View
65812  CVE-2005-0018  The f2 shell script in the f2c package 3.1 allows local users to read arbitrary files via a symlink attack on temporary files.    2.1  Low  2017-01-03  2008-09-05  View

Page 150 of 17672, showing 5 records out of 88360 total, starting on record 746, ending on 750

Actions