NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 65503 | CVE-2006-6960 | The Compression Sweep feature in WebRoot Spy Sweeper 4.5.9 and earlier does not handle non-ZIP archives, which allows remote attackers to bypass the malware detection via files with (1) RAR, (2) GZ, (3) TAR, (4) CAB, or (5) ACE compression. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 224 | CVE-2008-0239 | Multiple cross-site scripting (XSS) vulnerabilities in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allow remote attackers to inject arbitrary HTML or web script via the (1) cntry or lang parameters to /idm/login.jsp, (2) resultsForm parameter to /idm/account/findForSelect.jsp, or (3) activeControl parameter to /idm/user/main.jsp. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 65760 | CVE-2006-7217 | Apache Derby before 10.2.1.6 does not determine schema privilege requirements during the DropSchemaNode bind phase, which allows remote authenticated users to execute arbitrary drop schema statements in SQL authorization mode. | 2 | 4 | Medium | 2016-12-20 | 2008-09-05 | View | |
| 480 | CVE-2008-0505 | Multiple cross-site scripting (XSS) vulnerabilities in docs/showdoc.php in Coppermine Photo Gallery (CPG) before 1.4.15 allow remote attackers to inject arbitrary web script or HTML via the (1) h and (2) t parameters. | 2 | 4.3 | Medium | 2017-01-03 | 2009-09-11 | View | |
| 66016 | CVE-2005-0252 | SQL injection vulnerability in BibORB 1.3.2, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the (1) Username or (2) Password. | 2 | 7.5 | High | 2017-01-03 | 2016-10-17 | View |
Page 15146 of 17672, showing 5 records out of 88360 total, starting on record 75726, ending on 75730