NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
58406 | CVE-2007-6411 | Multiple buffer overflows in the HandleEmotsConfig function in the GG Client in Gadu-Gadu 7.7 Build 3669 allow user-assisted remote attackers to execute arbitrary code or cause a denial of service (gg.exe process crash) via a long string in an emots.txt file. | 2 | 4.3 | Medium | 2017-01-07 | 2008-09-05 | View | |
58918 | CVE-2006-0178 | Format string vulnerability in /bin/ftp in UNICOS 9.0.2.2 allows local users to have an unknown impact via format string specifiers in the quote command. NOTE: because the program is not setuid and not normally called from remote programs, there may not be a typical attack vector for the issue that crosses privilege boundaries. Therefore this may not be a vulnerability. | 2 | 7.2 | High | 2016-12-20 | 2008-09-05 | View | |
59942 | CVE-2006-1228 | Session fixation vulnerability in Drupal 4.5.x before 4.5.8 and 4.6.x before 4.5.8 allows remote attackers to gain privileges by tricking a user to click on a URL that fixes the session identifier. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
60710 | CVE-2006-2005 | Eval injection vulnerability in index.php in ClanSys 1.1 allows remote attackers to execute arbitrary PHP code via PHP code in the page parameter, as demonstrated by using an "include" statement that is injected into the eval statement. NOTE: this issue has been described as file inclusion by some sources, but that is just one attack; the primary vulnerability is eval injection. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
61478 | CVE-2006-2793 | SQL injection vulnerability in Anket.asp in ASPSitem 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the hid parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 16238 of 17672, showing 5 records out of 88360 total, starting on record 81186, ending on 81190