NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64483 | CVE-2006-5908 | Multiple SQL injection vulnerabilities in the login_user function in yans.func.php in Lucas Rodriguez San Pedro Yet Another News System (YANS) 0.2b allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
65251 | CVE-2006-6707 | Stack-based buffer overflow in the NeoTraceExplorer.NeoTraceLoader ActiveX control (NeoTraceExplorer.dll) in NeoTrace Express 3.25 and NeoTrace Pro (aka McAfee Visual Trace) 3.25 allows remote attackers to execute arbitrary code via a long argument string to the TraceTarget method. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
65507 | CVE-2006-6964 | MailEnable Professional before 1.78 provides a cleartext user password when an administrator edits the user"s settings, which allows remote authenticated administrators to obtain sensitive information by viewing the HTML source. | 2 | 4 | Medium | 2016-12-20 | 2008-09-05 | View | |
65764 | CVE-2006-7221 | Multiple off-by-one errors in fsplib.c in fsplib before 0.8 allow attackers to cause a denial of service via unspecified vectors involving the (1) name and (2) d_name entry attributes. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
740 | CVE-2008-0769 | Cross-site scripting (XSS) vulnerability in Livelink ECM 9.0.0 through 9.7.0 and possibly earlier does not set the charset, which allows remote attackers to inject arbitrary web script or HTML via UTF-7 encoded input. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 17475 of 17672, showing 5 records out of 88360 total, starting on record 87371, ending on 87375