NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
65256 | CVE-2006-6712 | Cross-site scripting (XSS) vulnerability in SugarCRM Open Source 4.5.0f and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in crafted email messages. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
65512 | CVE-2006-6969 | Jetty before 4.2.27, 5.1 before 5.1.12, 6.0 before 6.0.2, and 6.1 before 6.1.0pre3 generates predictable session identifiers using java.util.random, which makes it easier for remote attackers to guess a session identifier through brute force attacks, bypass authentication requirements, and possibly conduct cross-site request forgery attacks. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
233 | CVE-2008-0248 | Buffer overflow in an ActiveX control in ccpm_0237.dll for StreamAudio ChainCast ProxyManager allows remote attackers to execute arbitrary code via a long URL argument to the InternalTuneIn method. | 2 | 9.3 | High | 2017-01-03 | 2011-03-07 | View | |
65769 | CVE-2006-7226 | Perl-Compatible Regular Expression (PCRE) library before 6.7 does not properly calculate the compiled memory allocation for regular expressions that involve a quantified "subpattern containing a named recursion or subroutine reference," which allows context-dependent attackers to cause a denial of service (error or crash). | 2 | 4.3 | Medium | 2016-12-20 | 2010-08-21 | View | |
489 | CVE-2008-0514 | SQL injection vulnerability in index.php in the Glossary (com_glossary) 2.0 component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a display action. | 2 | 7.5 | High | 2017-01-03 | 2011-03-07 | View |
Page 16109 of 17672, showing 5 records out of 88360 total, starting on record 80541, ending on 80545