NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
62006  CVE-2006-3328  new_ticket.cgi in Hostflow 2.2.1-15 allows remote attackers to steal and replay authentication credentials via an IMG tag in the desc parameter ("Ticket Description" field) that points to a URL that captures referer URLs, possibly due to a cross-site scripting (XSS) vulnerability or a leak of credentials in referer URLs.    5.8  Medium  2016-12-20  2011-03-07  View
62262  CVE-2006-3588  Unspecified vulnerability in Adobe (Macromedia) Flash Player 8.0.24.0 allows remote attackers to cause a denial of service (browser crash) via a malformed, compressed .swf file, a different issue than CVE-2006-3587.    2.6  Low  2016-12-20  2011-03-07  View
62518  CVE-2006-3851  SQL injection vulnerability in upgradev1.php in X7 Chat 2.0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the old_prefix parameter.    7.5  High  2016-12-20  2011-03-07  View
62774  CVE-2006-4120  Cross-site scripting (XSS) vulnerability in the Recipe module (recipe.module) before 1.54 for Drupal 4.6 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.    5.1  Medium  2016-12-20  2011-03-07  View
63030  CVE-2006-4392  The Mach kernel, as used in operating systems including (1) Mac OS X 10.4 through 10.4.7 and (2) OpenStep before 4.2, allows local users to gain privileges via a parent process that forces an exception in a setuid child and uses Mach exception ports to modify the child"s thread context and task address space in a way that causes the child to call a parent-controlled function.    7.2  High  2016-12-20  2011-03-07  View

Page 16480 of 17672, showing 5 records out of 88360 total, starting on record 82396, ending on 82400

Actions