NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64670 | CVE-2006-6109 | Multiple SQL injection vulnerabilities in CandyPress Store 3.5.2.14 allow remote attackers to execute arbitrary SQL commands via the (1) policy parameter in openPolicy.asp or the (2) brand parameter in prodList.asp. | 2 | 7.5 | High | 2016-12-20 | 2016-11-18 | View | |
64926 | CVE-2006-6380 | Cross-site scripting (XSS) vulnerability in index.asp in Ultimate HelpDesk allows remote attackers to inject arbitrary web script or HTML via the keyword parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
65182 | CVE-2006-6638 | IBM DB2 8.1 before FixPak 14 allows remote attackers to cause a denial of service via a crafted SQLJRA packet, which causes a NULL pointer dereference in the sqle_db2ra_as_recvrequest function in DB2ENGN.DLL, a different issue than CVE-2006-4257. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
65438 | CVE-2006-6895 | The Bluetooth stack in the Sony Ericsson T60 does not properly implement "Limited discoverable" mode, which allows remote attackers to obtain unauthorized inquiry responses. | 2 | 2.9 | Low | 2016-12-20 | 2008-11-15 | View | |
65695 | CVE-2006-7152 | default.asp in ASP-Nuke Community 1.5 and earlier allows remote attackers to gain privileges by setting certain pseudo cookie values. | 2 | 8.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 17098 of 17672, showing 5 records out of 88360 total, starting on record 85486, ending on 85490