NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64501 | CVE-2006-5926 | Multiple SQL injection vulnerabilities in mail.php in Vallheru before 1.0.7 allow remote attackers to execute arbitrary SQL commands via the (1) id or (2) to parameters. NOTE: some of these details are obtained from third party information. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
64757 | CVE-2006-6196 | Cross-site scripting (XSS) vulnerability in the search functionality in Fixit iDMS Pro Image Gallery allows remote attackers to inject arbitrary web script or HTML via a search field (txtsearchtext parameter). | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
65013 | CVE-2006-6468 | Xerox WorkCentre and WorkCentre Pro before 12.050.03.000, 13.x before 13.050.03.000, and 14.x before 14.050.03.000 do not check the Fully Qualified Domain Name (FQDN) during a "Validate Repository SSL Certificate" scan, which has unknown impact and attack vectors, possibly related to spoofed certificates. | 2 | 5.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
65269 | CVE-2006-6725 | Multiple directory traversal vulnerabilities in PHPBuilder 0.0.2 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter to (1) lib/htm2php.php and (2) sitetools/htm2php.php. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
65525 | CVE-2006-6982 | 3proxy 0.5 to 0.5.2 does not offer NTLM authentication before basic authentication, which might cause browsers with incomplete RFC2616/RFC2617 support to use basic cleartext authentication even if NTLM is available, which makes it easier for attackers to steal credentials. | 2 | 5 | Medium | 2016-12-20 | 2008-11-15 | View |
Page 16643 of 17672, showing 5 records out of 88360 total, starting on record 83211, ending on 83215