NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63132  CVE-2006-4497  SQL injection vulnerability in comments.php in IwebNegar 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2016-12-20  2008-09-05  View
63644  CVE-2006-5038  The FiWin SS28S WiFi VoIP SIP/Skype Phone, firmware version 01_02_07, has a hard-coded username and password, which allows remote attackers to gain administrative access via telnet.    7.5  High  2016-12-20  2008-09-05  View
64924  CVE-2006-6378  BTSaveMySql 1.2 stores sensitive data under the web root with insufficient access control, which allows remote attackers to obtain configuration and save files via direct requests.    7.5  High  2016-12-20  2008-09-05  View
65436  CVE-2006-6893  Tor allows remote attackers to discover the IP address of a hidden service by accessing this service at a high rate, thereby changing the server"s CPU temperature and consequently changing the pattern of time values visible through (1) ICMP timestamps, (2) TCP sequence numbers, and (3) TCP timestamps, a different vulnerability than CVE-2006-0414. NOTE: it could be argued that this is a laws-of-physics vulnerability that is a fundamental design limitation of certain hardware implementations, so perhaps this issue should not be included in CVE.    Medium  2016-12-20  2008-09-05  View
65693  CVE-2006-7150  Multiple SQL injection vulnerabilities in Mambo 4.6.x allow remote attackers to execute arbitrary SQL commands via the mcname parameter to (1) moscomment.php and (2) com_comment.php.    7.5  High  2016-12-20  2008-09-05  View

Page 17026 of 17672, showing 5 records out of 88360 total, starting on record 85126, ending on 85130

Actions