NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
62453  CVE-2006-3785  Symantec pcAnywhere 12.5 obfuscates the passwords in a GUI textbox with asterisks but does not encrypt them in the associated .cif (aka caller or CallerID) file, which allows local users to obtain the passwords from the window using tools such as Nirsoft Asterwin.    2.1  Low  2016-12-20  2008-09-05  View
63477  CVE-2006-4861  SQL injection vulnerability in loginprocess.asp in Mohammed Mehdi Panjwani Complain Center 1 allows remote attackers to execute arbitrary SQL commands via the (1) TxtUser (aka Username) and (2) TxtPass (aka Password) parameters in login.asp.    7.5  High  2016-12-20  2008-09-05  View
64757  CVE-2006-6196  Cross-site scripting (XSS) vulnerability in the search functionality in Fixit iDMS Pro Image Gallery allows remote attackers to inject arbitrary web script or HTML via a search field (txtsearchtext parameter).    6.8  Medium  2016-12-20  2008-09-05  View
65013  CVE-2006-6468  Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 do not check the Fully Qualified Domain Name (FQDN) during a "Validate Repository SSL Certificate" scan, which has unknown impact and attack vectors, possibly related to spoofed certificates.    5.8  Medium  2016-12-20  2008-09-05  View
246  CVE-2008-0261  Unspecified vulnerability in the search component and module in Mambo 4.5.x and 4.6.x allows remote attackers to cause a denial of service (query flood) via unspecified vectors.    Medium  2017-01-03  2008-09-05  View

Page 1603 of 17672, showing 5 records out of 88360 total, starting on record 8011, ending on 8015

Actions