NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
58593  CVE-2007-6598  Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.    6.8  Medium  2017-01-07  2011-03-07  View
58849  CVE-2006-0109  Cross-site scripting vulnerability in category.php in Modular Merchant Shopping Cart allows remote attackers to inject arbitrary web script or HTML via the cat parameter.    Medium  2016-12-20  2011-03-07  View
59105  CVE-2006-0366  Cross-site scripting (XSS) vulnerability in Phpclanwebsite (aka PCW) allows remote attackers to inject arbitrary web script or HTML via a javascript URI in a BBCode img tag.    4.3  Medium  2016-12-20  2016-11-18  View
59361  CVE-2006-0630  RITLabs The Bat! before 3.0.0.15 displays certain important headers from encapsulated data in message/partial MIME messages, instead of the real headers, which is in violation of RFC2046 header merging rules and allows remote attackers to spoof the origin of e-mail by sending a fragmented message, as demonstrated using spoofed Received: and Message-ID: headers.    Medium  2016-12-20  2008-09-05  View
59617  CVE-2006-0888  index.php in Invision Power Board (IPB) 2.0.1, with Code Confirmation disabled, allows remote attackers to cause an unspecified denial of service by registering a large number of users.    2.6  Low  2016-12-20  2008-09-10  View

Page 15277 of 17672, showing 5 records out of 88360 total, starting on record 76381, ending on 76385

Actions