NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 59715 | CVE-2006-0992 | Stack-based buffer overflow in Novell GroupWise Messenger before 2.0 Public Beta 2 allows remote attackers to execute arbitrary code via a long Accept-Language value without a comma or semicolon. NOTE: due to a typo, the original ZDI advisory accidentally referenced CVE-2006-0092. This is the correct identifier. | 2 | 10 | High | 2016-12-20 | 2011-03-07 | View | |
| 59971 | CVE-2006-1257 | The sample files in the authfiles directory in Microsoft Commerce Server 2002 before SP2 allow remote attackers to bypass authentication by logging in to authfiles/login.asp with a valid username and any password, then going to the main site twice. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
| 60483 | CVE-2006-1778 | Multiple SQL injection vulnerabilities in Jeremy Ashcraft Simplog 0.9.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) blogid parameter in (a) index.php and (b) archive.php, the (2) m and (3) y parameters in archive.php, and the (4) sql parameter in (c) server.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
| 60739 | CVE-2006-2034 | SQL injection vulnerability in function/showprofile.php in FlexBB 0.5.5 allows remote attackers to execute arbitrary SQL commands, and view all usernames and passwords, via the id parameter to the showprofile page in index.php. | 2 | 7.5 | High | 2016-12-20 | 2008-09-05 | View | |
| 61507 | CVE-2006-2822 | SQL injection vulnerability in admin/default.asp in Dusan Drobac CodeAvalanche FreeForum (aka CAForum) 1.0 allows remote attackers to execute arbitrary SQL commands via the password parameter. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 2143 of 17672, showing 5 records out of 88360 total, starting on record 10711, ending on 10715