NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
62190  CVE-2006-3516  Multiple SQL injection vulnerabilities in FreeHost allow remote attackers to execute arbitrary SQL commands via (1) readme parameter to FreeHost/misc.php or (2) index parameter to FreeHost/news.php.    7.5  High  2016-12-20  2008-09-05  View
62446  CVE-2006-3778  IBM Lotus Notes 6.0, 6.5, and 7.0 does not properly handle replies to e-mail messages with alternate name users when the (1) "Save As Draft" option is used or (2) a "," (comma) is inside the "phrase" portion of an address, which can cause the e-mail to be sent to users that were deleted from the To, CC, and BCC fields, which allows remote attackers to obtain the list of original recipients.    Medium  2016-12-20  2008-09-05  View
62702  CVE-2006-4045  PHP remote file inclusion vulnerability in news.php in Torbstoff News 4 allows remote attackers to execute arbitrary PHP code via a URL in the pfad parameter.    7.5  High  2016-12-20  2011-03-07  View
62958  CVE-2006-4319  Buffer overflow in the format command in Solaris 8, 9, and 10 allows local users with access to format (such as the "File System Management" RBAC profile) to execute arbitrary code via unknown vectors, a different vulnerability than CVE-2006-4307.    7.2  High  2016-12-20  2011-03-07  View
63214  CVE-2006-4581  Unrestricted file upload vulnerability in The Address Book 1.04e validates the Content-Type header but not the file extension, which allows remote attackers to upload arbitrary PHP scripts.    Medium  2016-12-20  2008-11-15  View

Page 16515 of 17672, showing 5 records out of 88360 total, starting on record 82571, ending on 82575

Actions