NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
62739 | CVE-2006-4082 | Barracuda Spam Firewall (BSF), possibly 3.3.03.053, contains a hardcoded password for the admin account for logins from 127.0.0.1 (localhost), which allows local users to gain privileges. | 2 | 7.2 | High | 2016-12-20 | 2008-09-05 | View | |
63251 | CVE-2006-4618 | PHP remote file inclusion vulnerability in adodb-postgres7.inc.php in John Lim ADOdb, possibly 4.01 and earlier, as used in Intechnic In-link 2.3.4, allows remote attackers to execute arbitrary PHP code via a URL in the ADODB_DIR parameter. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
64531 | CVE-2006-5956 | XLineSoft PHPRunner 3.1 stores the (1) database server name, (2) database names, (3) usernames, and (4) passwords in plaintext in %WINDIR%PHPRunner.ini, which allows local users to obtain sensitive information by reading the file. | 2 | 2.1 | Low | 2016-12-20 | 2008-09-05 | View | |
64787 | CVE-2006-6226 | Multiple format string vulnerabilities in NeoEngine 0.8.2 and earlier, and CVS 3422, allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) Console::Render in neoengine/console.cpp and (2) TextArea::Render in neowtk/textarea.cpp. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
65556 | CVE-2006-7013 | ** DISPUTED ** QueryString.php in Simple Machines Forum (SMF) 1.0.7 and earlier, and 1.1rc2 and earlier, allows remote attackers to more easily spoof the IP address and evade banning via a modified X-Forwarded-For HTTP header, which is preferred instead of other more reliable sources for the IP address. NOTE: the original researcher claims that the vendor has disputed this issue. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 16127 of 17672, showing 5 records out of 88360 total, starting on record 80631, ending on 80635