NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 59870 | CVE-2006-1148 | Multiple stack-based buffer overflows in the procConnectArgs function in servmgr.cpp in PeerCast before 0.1217 allow remote attackers to execute arbitrary code via an HTTP GET request with a long (1) parameter name or (2) value in a URL, which triggers the overflow in the nextCGIarg function in servhs.cpp. | 2 | 7.5 | High | 2016-12-20 | 2011-09-06 | View | |
| 60126 | CVE-2006-1417 | Multiple cross-site scripting (XSS) vulnerabilities in Caloris Planitia Online Quiz System (aka Web Quiz pro), possibly 1.0, allow remote attackers to inject arbitrary web script or HTML via the (1) exam parameter in prequiz.asp or (2) msg parameter in student.asp. | 2 | 4.3 | Medium | 2016-12-20 | 2011-09-13 | View | |
| 60382 | CVE-2006-1677 | MAXdev MDPro 1.0.73 and 1.0.72, and possibly other versions before 1.076, allows remote attackers to obtain the full path of the server via a direct request to includes/legacy.php. | 2 | 6.4 | Medium | 2016-12-20 | 2011-10-03 | View | |
| 60638 | CVE-2006-1933 | Multiple unspecified vulnerabilities in Ethereal 0.10.x up to 0.10.14 allow remote attackers to cause a denial of service (large or infinite loops) viarafted packets to the (1) UMA and (2) BER dissectors. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 60894 | CVE-2006-2189 | SQL injection vulnerability in search.php in Servous sBLOG 0.7.2 allows remote attackers to execute arbitrary SQL commands via the keyword parameter. NOTE: this issue can be used to trigger path disclosure. In addition, it might be primary to vector 1 in CVE-2006-1135. | 2 | 10 | High | 2016-12-20 | 2008-09-05 | View |
Page 15424 of 17672, showing 5 records out of 88360 total, starting on record 77116, ending on 77120