NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
58838 | CVE-2006-0098 | The dupfdopen function in sys/kern/kern_descrip.c in OpenBSD 3.7 and 3.8 allows local users to re-open arbitrary files by using setuid programs to access file descriptors using /dev/fd/. | 2 | 4.6 | Medium | 2016-12-20 | 2008-09-05 | View | |
59094 | CVE-2006-0355 | Helmsman Research (aka CoolUtils) HomeFtp 1.1 allows remote attackers to cause an unspecified denial of service via a long USER command combined with a long PASS command and an NLST command. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
60374 | CVE-2006-1669 | SQL injection vulnerability in chat/messagesL.php3 in phpHeaven Team PHPMyChat 0.14.5 and earlier allows remote attackers to execute arbitrary SQL commands via the T parameter. NOTE: this issue can be leveraged to execute arbitrary shell commands since the username is later processed in an eval() call, but since the username originated from the SQL injection, it could be a resultant issue. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
60630 | CVE-2006-1925 | Directory traversal vulnerability in the editnews module (inc/editnews.mdu) in index.php in CuteNews 1.4.1 allows remote attackers to read or modify files via the source parameter in the (1) editnews or (2) doeditnews action. NOTE: this can also produce resultant XSS when the target file does not exist. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
61142 | CVE-2006-2443 | The Debian package of knowledgetree 2.0.7 creates environment.php with world-readable permissions, which allows local users to obtain sensitive information such as the username and password for the KnowledgeTree database. | 2 | 4.6 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17395 of 17672, showing 5 records out of 88360 total, starting on record 86971, ending on 86975