NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72989 | CVE-2004-2612 | BNC 2.9.0 only grants access when an incorrect password is provided, which allows remote attackers to use the functionality intended for authorized users. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
58909 | CVE-2006-0169 | addresses.php3 in MyPhPim 01.05 does not restrict uploaded files, which allows remote attackers to execute arbitrary PHP code via the pdbfile variable, then directly accessing those files from the uploads directory. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
59165 | CVE-2006-0427 | Unspecified vulnerability in BEA WebLogic Server and WebLogic Express 9.0 and 8.1 through SP5 allows malicious EJBs or servlet applications to decrypt system passwords, possibly by accessing functionality that should have been restricted. | 2 | 2.1 | Low | 2016-12-20 | 2011-03-07 | View | |
59421 | CVE-2006-0690 | Multiple SQL injection vulnerabilities in TTS Time Tracking Software 3.0 allow remote attackers to execute arbitrary SQL commands via unspecified vectors. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
59677 | CVE-2006-0950 | unalz 0.53 allows user-assisted attackers to overwrite arbitrary files via an ALZ archive with ".." (dot dot) sequences in a filename. | 2 | 2.6 | Low | 2016-12-20 | 2016-10-17 | View |
Page 16334 of 17672, showing 5 records out of 88360 total, starting on record 81666, ending on 81670