NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64684 | CVE-2006-6123 | Coppermine Photo Gallery (CPG) 1.4.8 stable, with register_globals enabled, allows remote attackers to bypass XSS protection and set arbitrary variables via a query string that causes the variable to be defined in global space, with separate _GET, _REQUEST, or other critical parameters, which are unset by the protection scheme and prevent the original variable from being detected. | 2 | 2.6 | Low | 2016-12-20 | 2008-09-05 | View | |
64940 | CVE-2006-6394 | SQL injection vulnerability in certain database classes in Jonas Gauffin Publicera 1.0-rc2 and earlier might allow remote attackers to execute arbitrary SQL commands via unspecified vectors. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65196 | CVE-2006-6652 | Buffer overflow in the glob implementation (glob.c) in libc in NetBSD-current before 20050914, NetBSD 2.* and 3.* before 20061203, and Apple Mac OS X before 2007-004, as used by the FTP daemon and tnftpd, allows remote authenticated users to execute arbitrary code via a long pathname that results from path expansion. | 2 | 9 | High | 2016-12-20 | 2011-03-07 | View | |
65452 | CVE-2006-6909 | Stack-based buffer overflow in http.c in Karl Dahlke Edbrowse (aka Command line editor browser) 3.1.3 allows remote attackers to execute arbitrary code by operating an FTP server that sends directory listings with (1) long user names or (2) long group names. | 2 | 10 | High | 2016-12-20 | 2016-10-17 | View | |
65709 | CVE-2006-7166 | IBM WebSphere Application Server (WAS) 5.1.1.9 and earlier allows remote attackers to obtain JSP source code and other sensitive information via "a specific JSP URL." | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 17182 of 17672, showing 5 records out of 88360 total, starting on record 85906, ending on 85910