NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65507  CVE-2006-6964  MailEnable Professional before 1.78 provides a cleartext user password when an administrator edits the user"s settings, which allows remote authenticated administrators to obtain sensitive information by viewing the HTML source.    Medium  2016-12-20  2008-09-05  View
65764  CVE-2006-7221  Multiple off-by-one errors in fsplib.c in fsplib before 0.8 allow attackers to cause a denial of service via unspecified vectors involving the (1) name and (2) d_name entry attributes.    Medium  2016-12-20  2008-09-05  View
72164  CVE-2004-1785  SQL injection vulnerability in calendar.php for Invision Power Board 1.3 allows remote attackers to execute arbitrary SQL commands via the m parameter, which sets the $this->chosen_month variable.    7.5  High  2016-12-20  2008-09-05  View
58852  CVE-2006-0112  Cross-site scripting (XSS) vulnerability in index.php in Enhanced Simple PHP Gallery 1.7 allows remote attackers to inject arbitrary web script or HTML via the dir parameter.    4.3  Medium  2016-12-20  2011-03-07  View
59108  CVE-2006-0369  ** DISPUTED ** MySQL 5.0.18 allows local users with access to a VIEW to obtain sensitive information via the "SELECT * FROM information_schema.views;" query, which returns the query that created the VIEW. NOTE: this issue has been disputed by third parties, saying that the availability of the schema is a normal and sometimes desired aspect of database access.    2.1  Low  2016-12-20  2008-09-05  View

Page 17510 of 17672, showing 5 records out of 88360 total, starting on record 87546, ending on 87550

Actions