NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 58423 | CVE-2007-6428 | The ProcGetReservedColormapEntries function in the TOG-CUP extension in X.Org Xserver before 1.4.1 allows context-dependent attackers to read the contents of arbitrary memory locations via a request containing a 32-bit value that is improperly used as an array index. | 2 | 5 | Medium | 2017-01-07 | 2013-08-30 | View | |
| 58679 | CVE-2007-6684 | The RTSP module in VideoLAN VLC 0.8.6d allows remote attackers to cause a denial of service (crash) via a request without a Transport parameter, which triggers a NULL pointer dereference. | 2 | 5 | Medium | 2017-01-07 | 2012-01-27 | View | |
| 58935 | CVE-2006-0195 | Interpretation conflict in the MagicHTML filter in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to conduct cross-site scripting (XSS) attacks via style sheet specifiers with invalid (1) "/*" and "*/" comments, or (2) a newline in a "url" specifier, which is processed by certain web browsers including Internet Explorer. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 59703 | CVE-2006-0980 | Multiple cross-site scripting (XSS) vulnerabilities in Jay Eckles CGI Calendar 2.7 allow remote attackers to inject arbitrary web script or HTML via the year parameter in (1) index.cgi and (2) viewday.cgi. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
| 60471 | CVE-2006-1766 | Multiple SQL injection vulnerabilities in Papoo 2.1.5, and 3 beta1 and earlier, allow remote attackers to execute arbitrary SQL commands via the (1) getlang and (2) reporeid parameter in (a) index.php, (3) menuid parameter in (b) plugin.php and (c) forumthread.php, and (4) msgid parameter in forumthread.php. | 2 | 6.4 | Medium | 2016-12-20 | 2008-11-03 | View |
Page 2008 of 17672, showing 5 records out of 88360 total, starting on record 10036, ending on 10040