NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
59161  CVE-2006-0423  BEA WebLogic Portal 8.1 through SP3 stores the password for the RDBMS Authentication provider in cleartext in the config.xml file, which allows attackers to gain privileges.    7.5  High  2016-12-20  2011-03-07  View
59417  CVE-2006-0686  add_user.php in Virtual Hosting Control System (VHCS) 2.4.7.1 and earlier does not check user privileges when adding a new administrative user, which allows remote attackers to gain unauthorized access.    10  High  2016-12-20  2011-03-07  View
59673  CVE-2006-0946  Cross-site scripting (XSS) vulnerability in Thomson SpeedTouch modems running firmware 5.3.2.6.0 allows remote attackers to inject arbitrary web script or HTML via the name parameter to the LocalNetwork page.    4.3  Medium  2016-12-20  2011-03-07  View
59929  CVE-2006-1215  Cross-site scripting (XSS) vulnerability in misc.php in Woltlab Burning Board (wBB) 2.3.4 allows remote attackers to inject arbitrary web script or HTML via the percent parameter. NOTE: this issue has been disputed in a followup post, although the original disclosure might be related to reflected XSS.    4.3  Medium  2016-12-20  2008-09-05  View
60185  CVE-2006-1476  Windows Firewall in Microsoft Windows XP SP2 produces incorrect application block alerts when the application filename is ".exe" (with no characters before the "."), which might allow local user-assisted users to trick a user into unblocking a Trojan horse program, as demonstrated by a malicious ".exe" program in a folder named "Internet Explorer," which triggers a question about whether to unblock the "Internet Explorer" program.    2.6  Low  2016-12-20  2008-09-05  View

Page 1760 of 17672, showing 5 records out of 88360 total, starting on record 8796, ending on 8800

Actions