NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63547 | CVE-2006-4939 | backup/backup_scheduled.php in Moodle before 1.6.2 generates trace data with the full backup pathname even when debugging is disabled, which might allow attackers to obtain the pathname. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
63803 | CVE-2006-5197 | PDshopPro stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for (1) /pdshoppro.mdb, (2) /data/pdshoppro.mdb, or (3) /shoppro/data/pdshoppro.mdb. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
64571 | CVE-2006-6010 | SAP allows remote attackers to obtain potentially sensitive information such as operating system and SAP version via an RFC_SYSTEM_INFO RfcCallReceive request, a different vulnerability than CVE-2003-0747. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
64827 | CVE-2006-6266 | Teredo clients, when following item 6 of RFC4380 section 5.2.3, start direct IPv6 connectivity tests (aka ping tests) in response to packets from non-Teredo source addresses, which might allow remote attackers to induce Teredo clients to send packets to third parties. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
828 | CVE-2008-0857 | SQL injection vulnerability in index.php in WoltLab Burning Board 3.0.3 PL 1 allows remote attackers to execute arbitrary SQL commands via the sortOrder parameter to the PMList page. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 16358 of 17672, showing 5 records out of 88360 total, starting on record 81786, ending on 81790