NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63195 | CVE-2006-4562 | ** DISPUTED ** The proxy DNS service in Symantec Gateway Security (SGS) allows remote attackers to make arbitrary DNS queries to third-party DNS servers, while hiding the source IP address of the attacker. NOTE: another researcher has stated that the default configuration does not proxy DNS queries received on the external interface. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
64475 | CVE-2006-5900 | Cross-site scripting (XSS) vulnerability in the incubator/tests/Zend/Http/_files/testRedirections.php sample code in Zend Framework Preview 0.2.0 allows remote attackers to inject arbitrary web script or HTML via arbitrary parameters. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
65243 | CVE-2006-6699 | Multiple CRLF injection vulnerabilities in Oracle Portal 9.0.2 and possibly other versions allow remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the enc parameter to (1) calendarDialog.jsp or (2) fred.jsp. NOTE: the calendar.jsp vector is covered by CVE-2006-6697. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
65499 | CVE-2006-6956 | Microsoft Internet Explorer allows remote attackers to cause a denial of service (crash) via a web page that contains a large number of nested marquee tags, a related issue to CVE-2006-2723. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
220 | CVE-2008-0235 | The Microsoft VFP_OLE_Server ActiveX control allows remote attackers to execute arbitrary code by invoking the foxcommand method. | 2 | 10 | High | 2017-01-03 | 2008-09-05 | View |
Page 17428 of 17672, showing 5 records out of 88360 total, starting on record 87136, ending on 87140