NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60910 | CVE-2006-2206 | The MS-Logon authentication scheme in UltraVNC (aka Ultr@VNC) 1.0.1 uses weak encryption (XOR) for challenge/response, which allows remote attackers to gain privileges by sniffing and decrypting passwords. | 2 | 10 | High | 2016-12-20 | 2008-09-05 | View | |
61934 | CVE-2006-3255 | SQL injection vulnerability in showmods.php in Woltlab Burning Board (WBB) 1.2 allows remote attackers to execute arbitrary SQL commands via the boardid parameter. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
62190 | CVE-2006-3516 | Multiple SQL injection vulnerabilities in FreeHost allow remote attackers to execute arbitrary SQL commands via (1) readme parameter to FreeHost/misc.php or (2) index parameter to FreeHost/news.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
62446 | CVE-2006-3778 | IBM Lotus Notes 6.0, 6.5, and 7.0 does not properly handle replies to e-mail messages with alternate name users when the (1) "Save As Draft" option is used or (2) a "," (comma) is inside the "phrase" portion of an address, which can cause the e-mail to be sent to users that were deleted from the To, CC, and BCC fields, which allows remote attackers to obtain the list of original recipients. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
63726 | CVE-2006-5120 | Multiple cross-site scripting (XSS) vulnerabilities in Scott Metoyer Red Mombin 0.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to (1) index.php and (2) process_login.php. | 2 | 4 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 17539 of 17672, showing 5 records out of 88360 total, starting on record 87691, ending on 87695