NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59099 | CVE-2006-0360 | MPM SIP HP-180W Wireless IP Phone WE.00.17 allows remote attackers to obtain sensitive information and possibly cause a denial of service via a direct connection to UDP port 9090, which is undocumented and does not require authentication. | 2 | 6.4 | Medium | 2016-12-20 | 2008-09-05 | View | |
60379 | CVE-2006-1674 | Cross-site scripting (XSS) vulnerability in search.php in PHPWebGallery 1.4.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter, a different vulnerability than CVE-2006-1675. | 2 | 2.6 | Low | 2016-12-20 | 2008-09-05 | View | |
60891 | CVE-2006-2186 | zenphoto 1.0.1 beta and earlier allow remote attackers to obtain sensitive information via a direct request for the (1) /photos/themes/default/ and (2) /photos/themes/testing/ URIs, which reveals the path in an error message. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
61403 | CVE-2006-2718 | JIWA Financials 6.4.14 passes a Microsoft SQL Server account"s username and password, and the name of a data source, to a Crystal Reports .rpt file, which allows remote authenticated users to execute certain standard stored procedures by referencing them in a user-written .rpt file, as demonstrated by using a stored procedure that provides the username and cleartext password of every account. | 2 | 6.5 | Medium | 2016-12-20 | 2008-09-05 | View | |
62427 | CVE-2006-3759 | Unspecified vulnerability in MyBB (aka MyBulletinBoard) 1.1.4, related has unspecified impact and attack vectors related to "user group manipulation." | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17427 of 17672, showing 5 records out of 88360 total, starting on record 87131, ending on 87135