NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61443 | CVE-2006-2758 | Directory traversal vulnerability in jetty 6.0.x (jetty6) beta16 allows remote attackers to read arbitrary files via a %2e%2e%5c (encoded ../) in the URL. NOTE: this might be the same issue as CVE-2005-3747. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View | |
61699 | CVE-2006-3015 | Argument injection vulnerability in WinSCP 3.8.1 build 328 allows remote attackers to upload or download arbitrary files via encoded spaces and double-quote characters in a scp or sftp URI. | 2 | 7.1 | High | 2016-12-20 | 2011-03-07 | View | |
61955 | CVE-2006-3276 | Heap-based buffer overflow in RealNetworks Helix DNA Server 10.0 and 11.0 allows remote attackers to execute arbitrary code via (1) a long User-Agent HTTP header in the RTSP service and (2) unspecified vectors involving the "parsing of HTTP URL schemes". | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62211 | CVE-2006-3537 | PHP remote file inclusion vulnerability in index.php in Randshop before 1.2 allows remote attackers to execute arbitrary PHP code via the dateiPfad parameter, a different vector than CVE-2006-3375. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62467 | CVE-2006-3799 | DeluxeBB 1.07 and earlier allows remote attackers to bypass SQL injection protection mechanisms via the login variable and certain other variables, by using lowercase "union select" or possibly other statements that do not match the uppercase "UNION SELECT." | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 270 of 17672, showing 5 records out of 88360 total, starting on record 1346, ending on 1350