NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62453 | CVE-2006-3785 | Symantec pcAnywhere 12.5 obfuscates the passwords in a GUI textbox with asterisks but does not encrypt them in the associated .cif (aka caller or CallerID) file, which allows local users to obtain the passwords from the window using tools such as Nirsoft Asterwin. | 2 | 2.1 | Low | 2016-12-20 | 2008-09-05 | View | |
63477 | CVE-2006-4861 | SQL injection vulnerability in loginprocess.asp in Mohammed Mehdi Panjwani Complain Center 1 allows remote attackers to execute arbitrary SQL commands via the (1) TxtUser (aka Username) and (2) TxtPass (aka Password) parameters in login.asp. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
64757 | CVE-2006-6196 | Cross-site scripting (XSS) vulnerability in the search functionality in Fixit iDMS Pro Image Gallery allows remote attackers to inject arbitrary web script or HTML via a search field (txtsearchtext parameter). | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
65013 | CVE-2006-6468 | Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 do not check the Fully Qualified Domain Name (FQDN) during a "Validate Repository SSL Certificate" scan, which has unknown impact and attack vectors, possibly related to spoofed certificates. | 2 | 5.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
246 | CVE-2008-0261 | Unspecified vulnerability in the search component and module in Mambo 4.5.x and 4.6.x allows remote attackers to cause a denial of service (query flood) via unspecified vectors. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 1603 of 17672, showing 5 records out of 88360 total, starting on record 8011, ending on 8015