NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
60405  CVE-2006-1700  Buy.php in Aweb Scripts Seller uses predictable cookies for authentication based on the time and the script number, which allows remote attackers to bypass authentication.    7.5  High  2016-12-20  2008-09-05  View
60661  CVE-2006-1956  The com_rss option (rss.php) in (1) Mambo and (2) Joomla! allows remote attackers to obtain sensitive information via an invalid feed parameter, which reveals the path in an error message.    Medium  2016-12-20  2008-09-05  View
62453  CVE-2006-3785  Symantec pcAnywhere 12.5 obfuscates the passwords in a GUI textbox with asterisks but does not encrypt them in the associated .cif (aka caller or CallerID) file, which allows local users to obtain the passwords from the window using tools such as Nirsoft Asterwin.    2.1  Low  2016-12-20  2008-09-05  View
63477  CVE-2006-4861  SQL injection vulnerability in loginprocess.asp in Mohammed Mehdi Panjwani Complain Center 1 allows remote attackers to execute arbitrary SQL commands via the (1) TxtUser (aka Username) and (2) TxtPass (aka Password) parameters in login.asp.    7.5  High  2016-12-20  2008-09-05  View
64757  CVE-2006-6196  Cross-site scripting (XSS) vulnerability in the search functionality in Fixit iDMS Pro Image Gallery allows remote attackers to inject arbitrary web script or HTML via a search field (txtsearchtext parameter).    6.8  Medium  2016-12-20  2008-09-05  View

Page 17580 of 17672, showing 5 records out of 88360 total, starting on record 87896, ending on 87900

Actions