NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
65507 | CVE-2006-6964 | MailEnable Professional before 1.78 provides a cleartext user password when an administrator edits the user"s settings, which allows remote authenticated administrators to obtain sensitive information by viewing the HTML source. | 2 | 4 | Medium | 2016-12-20 | 2008-09-05 | View | |
65764 | CVE-2006-7221 | Multiple off-by-one errors in fsplib.c in fsplib before 0.8 allow attackers to cause a denial of service via unspecified vectors involving the (1) name and (2) d_name entry attributes. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
72164 | CVE-2004-1785 | SQL injection vulnerability in calendar.php for Invision Power Board 1.3 allows remote attackers to execute arbitrary SQL commands via the m parameter, which sets the $this->chosen_month variable. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
58852 | CVE-2006-0112 | Cross-site scripting (XSS) vulnerability in index.php in Enhanced Simple PHP Gallery 1.7 allows remote attackers to inject arbitrary web script or HTML via the dir parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
59108 | CVE-2006-0369 | ** DISPUTED ** MySQL 5.0.18 allows local users with access to a VIEW to obtain sensitive information via the "SELECT * FROM information_schema.views;" query, which returns the query that created the VIEW. NOTE: this issue has been disputed by third parties, saying that the availability of the schema is a normal and sometimes desired aspect of database access. | 2 | 2.1 | Low | 2016-12-20 | 2008-09-05 | View |
Page 17510 of 17672, showing 5 records out of 88360 total, starting on record 87546, ending on 87550