NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64543 | CVE-2006-5968 | MDaemon 9.0.5, 9.0.6, 9.51, and 9.53, and possibly other versions, installs the MDaemon application folder with insecure permissions (Users create files/directories), which allows local users to execute arbitrary code by creating malicious RASAPI32.DLL or MPRAPI.DLL libraries in the MDaemonAPP folder, which is an untrusted search path element due to insecure permissions. | 2 | 4.6 | Medium | 2016-12-20 | 2011-03-07 | View | |
64799 | CVE-2006-6238 | The AutoFill feature in Apple Safari 2.0.4 does not properly verify that all automatically populated form fields are visible to the user, which allows remote attackers to obtain sensitive information, such as usernames and passwords, via input fields of zero width, a variant of CVE-2006-6077. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
65055 | CVE-2006-6510 | An unspecified ActiveX control in SiteKiosk before 6.5.150 is installed "safe for scripting", which allows local users to bypass security protections and read arbitrary files via certain functions. | 2 | 1.7 | Low | 2016-12-20 | 2011-03-07 | View | |
65311 | CVE-2006-6767 | oftpd before 0.3.7 allows remote attackers to cause a denial of service (daemon abort) via a (1) LPRT or (2) LPASV command with an unsupported address family, which triggers an assertion failure. | 2 | 9.4 | High | 2016-12-20 | 2011-03-07 | View | |
65568 | CVE-2006-7025 | SQL injection vulnerability in admin/config.php in Bookmark4U 2.0 and 2.1 allows remote attackers to inject arbitrary SQL command via the sqlcmd parameter. | 2 | 7.5 | High | 2016-12-20 | 2016-11-18 | View |
Page 179 of 17672, showing 5 records out of 88360 total, starting on record 891, ending on 895