NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65342  CVE-2006-6799  SQL injection vulnerability in Cacti 0.8.6i and earlier, when register_argc_argv is enabled, allows remote attackers to execute arbitrary SQL commands via the (1) second or (2) third arguments to cmd.php. NOTE: this issue can be leveraged to execute arbitrary commands since the SQL query results are later used in the polling_items array and popen function.    7.5  High  2016-12-20  2011-03-07  View
65599  CVE-2006-7056  Multiple PHP remote file inclusion vulnerabilities in DreamCost HostAdmin 3.1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the path parameter to (1) functions.php and (2) members.php. NOTE: the index.php vector is covered by CVE-2006-0791.    6.8  Medium  2016-12-20  2008-09-05  View
71231  CVE-2004-0807  Samba 3.0.6 and earlier allows remote attackers to cause a denial of service (infinite loop and memory exhaustion) via certain malformed requests that cause new processes to be spawned and enter an infinite loop.    Medium  2016-12-20  2016-10-17  View
72511  CVE-2004-2134  Oracle toplink mapping workBench uses a weak encryption algorithm for passwords, which allows local users to decrypt the passwords.    4.6  Medium  2016-12-20  2016-10-17  View
73023  CVE-2004-2646  The addUser function in UserManager.java in Free Web Chat 2.0 allows remote attackers to cause a denial of service (uncaught NullPointerException) via unknown attack vectors that cause the usrName variable to be null.    Medium  2016-12-20  2016-10-17  View

Page 16529 of 17672, showing 5 records out of 88360 total, starting on record 82641, ending on 82645

Actions