NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
58853 | CVE-2006-0113 | Enhanced Simple PHP Gallery 1.7 allows remote attackers to obtain the full path of the application via a direct request to sp_helper_functions.php, which leaks the pathname in an error message. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
59109 | CVE-2006-0370 | Noah Medling RCBlog 1.03 stores the data and config directories under the web root with insufficient access control, which allows remote attackers to view account names and MD5 password hashes. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
59365 | CVE-2006-0634 | Borland C++Builder 6 (BCB6) with Update Pack 4 Enterprise edition (ent_upd4) evaluates the "i>sizeof(int)" expression to false when i equals -1, which might introduce integer overflow vulnerabilities into applications that could be exploited by context-dependent attackers. | 2 | 4.6 | Medium | 2016-12-20 | 2008-09-05 | View | |
59621 | CVE-2006-0892 | NOCC Webmail 1.0 stores e-mail attachments in temporary files with predictable filenames, which makes it easier for remote attackers to execute arbitrary code by accessing the e-mail attachment via directory traversal vulnerabilities. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
61669 | CVE-2006-2985 | SQL injection vulnerability in index.php in IntegraMOD 1.4.0 and earlier allows remote attackers to execute arbitrary SQL commands via double-encoded """ characters in the STYLE_URL parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View |
Page 17485 of 17672, showing 5 records out of 88360 total, starting on record 87421, ending on 87425