NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
65342 | CVE-2006-6799 | SQL injection vulnerability in Cacti 0.8.6i and earlier, when register_argc_argv is enabled, allows remote attackers to execute arbitrary SQL commands via the (1) second or (2) third arguments to cmd.php. NOTE: this issue can be leveraged to execute arbitrary commands since the SQL query results are later used in the polling_items array and popen function. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65599 | CVE-2006-7056 | Multiple PHP remote file inclusion vulnerabilities in DreamCost HostAdmin 3.1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the path parameter to (1) functions.php and (2) members.php. NOTE: the index.php vector is covered by CVE-2006-0791. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
71231 | CVE-2004-0807 | Samba 3.0.6 and earlier allows remote attackers to cause a denial of service (infinite loop and memory exhaustion) via certain malformed requests that cause new processes to be spawned and enter an infinite loop. | 2 | 5 | Medium | 2016-12-20 | 2016-10-17 | View | |
72511 | CVE-2004-2134 | Oracle toplink mapping workBench uses a weak encryption algorithm for passwords, which allows local users to decrypt the passwords. | 2 | 4.6 | Medium | 2016-12-20 | 2016-10-17 | View | |
73023 | CVE-2004-2646 | The addUser function in UserManager.java in Free Web Chat 2.0 allows remote attackers to cause a denial of service (uncaught NullPointerException) via unknown attack vectors that cause the usrName variable to be null. | 2 | 5 | Medium | 2016-12-20 | 2016-10-17 | View |
Page 16529 of 17672, showing 5 records out of 88360 total, starting on record 82641, ending on 82645