NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60142 | CVE-2006-1433 | Annuaire (Directory) 1.0 allows remote attackers to obtain sensitive information via a direct request to include/lang-en.php, which reveals the full installation path. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
60398 | CVE-2006-1693 | Unspecified vulnerability in GlobalSCAPE Secure FTP Server before 3.1.4 Build 01.10.2006 allows attackers to cause a denial of service (application crash) via a "custom command" with a long argument. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
61166 | CVE-2006-2471 | Multiple vulnerabilities in BEA WebLogic Server 8.1 through SP4, 7.0 through SP6, and 6.1 through SP7 leak sensitive information to remote attackers, including (1) DNS and IP addresses to address to T3 clients, (2) internal sensitive information using GetIORServlet, (3) certain "server details" in exceptions when invalid XML is provided, and (4) a stack trace in a SOAP fault. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61678 | CVE-2006-2994 | Multiple cross-site scripting (XSS) vulnerabilities in index.php in phazizGuestbook 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) email, (3) url fields, and (4) text field (content parameter). | 2 | 5.8 | Medium | 2016-12-20 | 2011-09-13 | View | |
62446 | CVE-2006-3778 | IBM Lotus Notes 6.0, 6.5, and 7.0 does not properly handle replies to e-mail messages with alternate name users when the (1) "Save As Draft" option is used or (2) a "," (comma) is inside the "phrase" portion of an address, which can cause the e-mail to be sent to users that were deleted from the To, CC, and BCC fields, which allows remote attackers to obtain the list of original recipients. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17054 of 17672, showing 5 records out of 88360 total, starting on record 85266, ending on 85270