NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64193 | CVE-2006-5598 | Cross-site scripting (XSS) vulnerability in index.php for GOOP Gallery 2.0, and possibly other versions before 2.0.3, allows remote attackers to inject arbitrary HTML or web script via the image parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
64449 | CVE-2006-5874 | Clam AntiVirus (ClamAV) 0.88 and earlier allows remote attackers to cause a denial of service (crash) via a malformed base64-encoded MIME attachment that triggers a null pointer dereference. | 2 | 5 | Medium | 2016-12-20 | 2010-09-15 | View | |
64705 | CVE-2006-6144 | The "mechglue" abstraction interface of the GSS-API library for Kerberos 5 1.5 through 1.5.1, as used in Kerberos administration daemon (kadmind) and other products that use this library, allows remote attackers to cause a denial of service (crash) via unspecified vectors that cause mechglue to free uninitialized pointers. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
64961 | CVE-2006-6416 | Multiple PHP remote file inclusion vulnerabilities in PhpLeague - Univert PhpLeague 0.81 allow remote attackers to execute arbitrary PHP code via a URL in the cheminmini parameter to (1) consult/miniseul.php or (2) config.php. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
65217 | CVE-2006-6673 | WinFtp Server 2.0.2 allows remote attackers to cause a denial of service (crash) via long (1) PASV, (2) LIST, (3) USER, (4) PORT, and possibly other commands. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 17307 of 17672, showing 5 records out of 88360 total, starting on record 86531, ending on 86535