NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 63153 | CVE-2006-4520 | ncp in Novell eDirectory before 8.7.3 SP9, and 8.8.x before 8.8.1 FTF2, does not properly handle NCP fragments with a negative length, which allows remote attackers to cause a denial of service (daemon crash) when the heap is written to a log file. | 2 | 7.8 | High | 2016-12-20 | 2011-03-07 | View | |
| 63409 | CVE-2006-4785 | SQL injection vulnerability in blog/edit.php in Moodle 1.6.1 and earlier allows remote attackers to execute arbitrary SQL commands via the format parameter as stored in the $blogEntry variable, which is not properly handled by the insert_record function, which calls _adodb_column_sql in the adodb layer (lib/adodb/adodb-lib.inc.php), which does not convert the data type to an int. | 2 | 7.5 | High | 2016-12-20 | 2011-08-05 | View | |
| 63921 | CVE-2006-5318 | PHP remote file inclusion vulnerability in index.php in Nayco JASmine (aka Jasmine-Web) allows remote attackers to execute arbitrary PHP code via an FTP URL in the section parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 64177 | CVE-2006-5581 | Unspecified vulnerability in Microsoft Internet Explorer 6 allows remote attackers to execute arbitrary code via certain DHTML script functions, such as normalize, and "incorrectly created elements" that trigger memory corruption, aka "DHTML Script Function Memory Corruption Vulnerability." | 2 | 9.3 | High | 2016-12-20 | 2011-04-13 | View | |
| 64945 | CVE-2006-6399 | SQL injection vulnerability in Superfreaker Studios UPublisher 1.0 allows remote attackers to execute arbitrary SQL commands via the Username parameter in login.asp. NOTE: the provenance of this information is unknown; details are obtained from third party sources. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 15184 of 17672, showing 5 records out of 88360 total, starting on record 75916, ending on 75920