NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63009 | CVE-2006-4370 | Alt-N WebAdmin 3.2.3 and 3.2.4 running with MDaemon 9.0.5, and possibly earlier, allow remote authenticated domain administrators to change a global administrator"s password and gain privileges via the userlist.wdm file. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63265 | CVE-2006-4632 | Multiple SQL injection vulnerabilities in SoftBB 0.1, and possibly earlier, allow remote attackers to execute arbitrary SQL commands via the (1) groupe parameter in addmembre.php and the (2) select parameter in moveto.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63521 | CVE-2006-4906 | SQL injection vulnerability in modules/calendar/week.php in More.groupware 0.74 allows remote attackers to execute arbitrary SQL commands via the new_calendarid parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
63777 | CVE-2006-5171 | Stack-based buffer overflow in the RPC interface in Mediasvr.exe in Computer Associates (CA) Brightstor ARCserve Backup 9.01 through 11.5, Enterprise Backup 10.5, and CA Protection Suites r2 allows remote attackers to execute arbitrary code via crafted SUNRPC packets, aka the "Mediasvr.exe Overflow," a different vulnerability than CVE-2006-5172. | 2 | 10 | High | 2016-12-20 | 2011-03-07 | View | |
64033 | CVE-2006-5432 | Multiple direct static code injection vulnerabilities in db/txt.inc.php in phpPowerCards 2.10, when register_globals is enabled, allow remote attackers to create or overwrite arbitrary files via the (1) email[to], (2) email[from], (3) name[to], (4) name[from], (5) picture, (6) comment, or (7) sessionID parameter, as demonstrated by creating a new .php file that permits remote file inclusion, and then requesting this file. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View |
Page 189 of 17672, showing 5 records out of 88360 total, starting on record 941, ending on 945