NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60636 | CVE-2006-1931 | The HTTP/XMLRPC server in Ruby before 1.8.2 uses blocking sockets, which allows attackers to cause a denial of service (blocked connections) via a large amount of data. | 2 | 5 | Medium | 2016-12-20 | 2010-08-21 | View | |
60892 | CVE-2006-2187 | Multiple cross-site scripting (XSS) vulnerabilities in zenphoto 1.0.1 beta and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) a parameter in i.php, and the (2) album and (3) image parameters in index.php. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
61148 | CVE-2006-2449 | KDE Display Manager (KDM) in KDE 3.2.0 up to 3.5.3 allows local users to read arbitrary files via a symlink attack related to the session type for login. | 2 | 4 | Medium | 2016-12-20 | 2011-03-07 | View | |
61404 | CVE-2006-2719 | JIWA Financials 6.4.14 stores usernames and passwords for all accounts in cleartext in the HR_Staff table in Microsoft SQL Server, and sends the usernames and passwords in cleartext to the application"s SQL Server ODBC driver, which might allow context-dependent attackers to obtain the passwords. | 2 | 4.9 | Medium | 2016-12-20 | 2008-09-05 | View | |
62940 | CVE-2006-4301 | Microsoft Internet Explorer 6.0 SP1 allows remote attackers to cause a denial of service (crash) via a long Color attribute in multiple DirectX Media Image DirectX Transforms ActiveX COM Objects from (a) dxtmsft.dll and (b) dxtmsft3.dll, including (1) DXImageTransform.Microsoft.MaskFilter.1, (2) DXImageTransform.Microsoft.Chroma.1, and (3) DX3DTransform.Microsoft.Shapes.1. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 16428 of 17672, showing 5 records out of 88360 total, starting on record 82136, ending on 82140