NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64968 | CVE-2006-6423 | Stack-based buffer overflow in the IMAP service for MailEnable Professional and Enterprise Edition 2.0 through 2.35, Professional Edition 1.6 through 1.84, and Enterprise Edition 1.1 through 1.41 allows remote attackers to execute arbitrary code via a pre-authentication command followed by a crafted parameter and a long string, as addressed by the ME-10025 hotfix. | 2 | 10 | High | 2016-12-20 | 2008-09-05 | View | |
65224 | CVE-2006-6680 | Pedro Lineu Orso chetcpasswd before 2.3.1 does not document the need for 0400 permissions on /etc/chetcpasswd.allow, which might allow local users to gain sensitive information by reading this file. | 2 | 4.6 | Medium | 2016-12-20 | 2008-09-05 | View | |
65480 | CVE-2006-6937 | SQL injection vulnerability in displaypic.asp in Xtreme ASP Photo Gallery allows remote attackers to inject arbitrary SQL commands via the sortorder parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
201 | CVE-2008-0216 | The ptsname function in FreeBSD 6.0 through 7.0-PRERELEASE does not properly verify that a certain portion of a device name is associated with a pty of a user who is calling the pt_chown function, which might allow local users to read data from the pty from another user. | 2 | 2.1 | Low | 2017-01-03 | 2008-09-05 | View | |
65737 | CVE-2006-7194 | PHP remote file inclusion vulnerability in modules/Mysqlfinder/MysqlfinderAdmin.php in Agora 1.4 RC1, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the _SESSION[PATH_COMPOSANT] parameter. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17311 of 17672, showing 5 records out of 88360 total, starting on record 86551, ending on 86555