NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63132 | CVE-2006-4497 | SQL injection vulnerability in comments.php in IwebNegar 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
63644 | CVE-2006-5038 | The FiWin SS28S WiFi VoIP SIP/Skype Phone, firmware version 01_02_07, has a hard-coded username and password, which allows remote attackers to gain administrative access via telnet. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
64924 | CVE-2006-6378 | BTSaveMySql 1.2 stores sensitive data under the web root with insufficient access control, which allows remote attackers to obtain configuration and save files via direct requests. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
65436 | CVE-2006-6893 | Tor allows remote attackers to discover the IP address of a hidden service by accessing this service at a high rate, thereby changing the server"s CPU temperature and consequently changing the pattern of time values visible through (1) ICMP timestamps, (2) TCP sequence numbers, and (3) TCP timestamps, a different vulnerability than CVE-2006-0414. NOTE: it could be argued that this is a laws-of-physics vulnerability that is a fundamental design limitation of certain hardware implementations, so perhaps this issue should not be included in CVE. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
65693 | CVE-2006-7150 | Multiple SQL injection vulnerabilities in Mambo 4.6.x allow remote attackers to execute arbitrary SQL commands via the mcname parameter to (1) moscomment.php and (2) com_comment.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 17026 of 17672, showing 5 records out of 88360 total, starting on record 85126, ending on 85130