NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61805 | CVE-2006-3125 | Array index error in tetrinet.c in gtetrinet 0.7.8 and earlier allows remote attackers to execute arbitrary code via a packet specifying a negative number of players, which is used as an array index. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63085 | CVE-2006-4450 | usercp_avatar.php in PHPBB 2.0.20, when avatar uploading is enabled, allows remote attackers to use the server as a web proxy by submitting a URL to the avatarurl parameter, which is then used in an HTTP GET request. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
63597 | CVE-2006-4989 | Patrick Michaelis Wili-CMS allows remote attackers to obtain sensitive information via a direct request for (1) thumbnail.php, (2) functions/admin/all.php, (3) functions/admin/init_session.php, (4) functions/all.php, and (5) certain files in example-view/admin_templates/, which reveals the path in various error messages. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
63853 | CVE-2006-5247 | Multiple cross-site scripting (XSS) vulnerabilities in Eazy Cart allow remote attackers to inject arbitrary web script or HTML via easycart.php, possibly related to the (1) des and (2) qty parameters in an add action, and via other unspecified vectors. NOTE: some details are obtained from third party information. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
64621 | CVE-2006-6060 | The NTFS filesystem code in Linux kernel 2.6.x up to 2.6.18, and possibly other versions, allows local users to cause a denial of service (CPU consumption) via a malformed NTFS file stream that triggers an infinite loop in the __find_get_block_slow function. | 2 | 4.9 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 16691 of 17672, showing 5 records out of 88360 total, starting on record 83451, ending on 83455