NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59578 | CVE-2006-0848 | The "Open "safe" files after downloading" option in Safari on Apple Mac OS X allows remote user-assisted attackers to execute arbitrary commands by tricking a user into downloading a __MACOSX folder that contains metadata (resource fork) that invokes the Terminal, which automatically interprets the script using bash, as demonstrated using a ZIP file that contains a script with a safe file extension. | 2 | 5.1 | Medium | 2016-12-20 | 2013-08-18 | View | |
59834 | CVE-2006-1112 | Aztek Forum 4.0 allows remote attackers to obtain sensitive information via a long login value in a register form, which displays the installation path in a MySQL error message. | 2 | 5 | Medium | 2016-12-20 | 2008-09-10 | View | |
60090 | CVE-2006-1381 | Trend Micro OfficeScan 5.5, and probably other versions before 6.5, uses insecure DACLs for critical files, which allows local users to gain SYSTEM privileges by modifying tmlisten.exe. | 2 | 10 | High | 2016-12-20 | 2011-03-07 | View | |
60346 | CVE-2006-1641 | Multiple SQL injection vulnerabilities in CzarNews 1.14 allow remote attackers to execute arbitrary SQL commands via the (1) usern or (2) passw parameters to (a) cn_auth.php, (3) s parameter to (b) news.php, or (4) a parameter to (c) dpost.php. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
60602 | CVE-2006-1897 | Webplus (aka talentsoft) Web+Shop 5.3.6, when Redirect URL for "Script Not Found" Error is not configured, allows remote attackers to obtain sensitive information via a quote (") or possibly other invalid value in the storeid parameter in store.wml in webplus.exe, which reveals the path in a "Script Not Found" error message. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17262 of 17672, showing 5 records out of 88360 total, starting on record 86306, ending on 86310