NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
60024  CVE-2006-1314  Heap-based buffer overflow in the Server Service (SRV.SYS driver) in Microsoft Windows 2000 SP4, XP SP1 and SP2, Server 2003 up to SP1, and other products, allows remote attackers to execute arbitrary code via crafted first-class Mailslot messages that triggers memory corruption and bypasses size restrictions on second-class Mailslot messages.    7.5  High  2016-12-20  2011-03-07  View
60280  CVE-2006-1572  SQL injection vulnerability in post.php in Oxygen 1.1.3 allows remote attackers to execute arbitrary SQL commands via the fid parameter in a newthread action.    Medium  2016-12-20  2011-03-07  View
60536  CVE-2006-1831  Direct static code injection vulnerability in sysinfo.cgi in sysinfo 1.21 and possibly other versions before 2.25 allows remote attackers to execute arbitrary commands via a leading ; (semicolon) in the name parameter in a systemdoc action, which is injected into phpinfo.php.    7.5  High  2016-12-20  2011-03-07  View
60792  CVE-2006-2087  The Gmax Mail client in Hitachi Groupmax before 20060426 allows remote attackers to cause a denial of service (application hang or erroneous behavior) via an attachment with an MS-DOS device filename.    Medium  2016-12-20  2011-03-07  View
61048  CVE-2006-2346  vpopmail 5.4.14 and 5.4.15, with cleartext passwords enabled, allows remote attackers to authenticate to an account that does not have a cleartext password set by using a blank password to (1) SMTP AUTH or (2) APOP.    7.5  High  2016-12-20  2011-03-07  View

Page 16866 of 17672, showing 5 records out of 88360 total, starting on record 84326, ending on 84330

Actions