NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59099  CVE-2006-0360  MPM SIP HP-180W Wireless IP Phone WE.00.17 allows remote attackers to obtain sensitive information and possibly cause a denial of service via a direct connection to UDP port 9090, which is undocumented and does not require authentication.    6.4  Medium  2016-12-20  2008-09-05  View
60379  CVE-2006-1674  Cross-site scripting (XSS) vulnerability in search.php in PHPWebGallery 1.4.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter, a different vulnerability than CVE-2006-1675.    2.6  Low  2016-12-20  2008-09-05  View
60891  CVE-2006-2186  zenphoto 1.0.1 beta and earlier allow remote attackers to obtain sensitive information via a direct request for the (1) /photos/themes/default/ and (2) /photos/themes/testing/ URIs, which reveals the path in an error message.    Medium  2016-12-20  2008-09-05  View
61403  CVE-2006-2718  JIWA Financials 6.4.14 passes a Microsoft SQL Server account"s username and password, and the name of a data source, to a Crystal Reports .rpt file, which allows remote authenticated users to execute certain standard stored procedures by referencing them in a user-written .rpt file, as demonstrated by using a stored procedure that provides the username and cleartext password of every account.    6.5  Medium  2016-12-20  2008-09-05  View
62427  CVE-2006-3759  Unspecified vulnerability in MyBB (aka MyBulletinBoard) 1.1.4, related has unspecified impact and attack vectors related to "user group manipulation."    Medium  2016-12-20  2008-09-05  View

Page 17427 of 17672, showing 5 records out of 88360 total, starting on record 87131, ending on 87135

Actions