NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
64292 | CVE-2006-5717 | Multiple cross-site scripting (XSS) vulnerabilities in Zend Google Data Client Library (ZendGData) Preview 0.2.0 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters in (1) basedemo.php and (2) calenderdemo.php in samples/, and other unspecified files. | 2 | 4.3 | Medium | 2016-12-20 | 2008-09-05 | View | |
64548 | CVE-2006-5973 | Off-by-one buffer overflow in Dovecot 1.0test53 through 1.0.rc14, and possibly other versions, when index files are used and mmap_disable is set to "yes," allows remote authenticated IMAP or POP3 users to cause a denial of service (crash) via unspecified vectors involving the cache file. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
64804 | CVE-2006-6243 | Multiple SQL injection vulnerabilities in index.asp in FipsSHOP allow remote attackers to execute arbitrary SQL commands via the (1) cat or (2) did parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
65060 | CVE-2006-6515 | Mantis before 1.1.0a2 sets the default value of $g_bug_reminder_threshold to "reporter" instead of a more privileged role, which has unknown impact and attack vectors, possibly related to frequency of reminders. | 2 | 10 | High | 2016-12-20 | 2008-09-05 | View | |
65316 | CVE-2006-6772 | Format string vulnerability in the inputAnswer function in file.c in w3m before 0.5.2, when run with the dump or backend option, allows remote attackers to execute arbitrary code via format string specifiers in the Common Name (CN) field of an SSL certificate associated with an https URL. | 2 | 9.3 | High | 2016-12-20 | 2011-10-18 | View |
Page 207 of 17672, showing 5 records out of 88360 total, starting on record 1031, ending on 1035