NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60727 | CVE-2006-2022 | Buffer overflow in the parse_url function in the RTSP module (rtsp/parse_url.c) in Fenice 1.10 and earlier allows remote attackers to execute arbitrary code via a long URL. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
60983 | CVE-2006-2280 | Directory traversal vulnerability in website.php in openEngine 1.8 Beta 2 and earlier allows remote attackers to list arbitrary directories and read arbitrary files via a .. (dot dot) in the template parameter. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
61239 | CVE-2006-2544 | Multiple SQL injection vulnerabilities in Xtreme Topsites 1.1, with magic_quotes_gpc disabled, allow remote attackers to execute arbitrary SQL commands via the (1) searchthis parameter in lostid.php and (2) id parameter in stats.php. NOTE: the provenance of this information is unknown; portions of the details are obtained from third party information. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
61495 | CVE-2006-2810 | Multiple cross-site scripting (XSS) vulnerabilities in Belchior Foundry vCard 2.9 allow remote attackers to inject arbitrary web script or HTML via the page parameter in (1) toprated.php and (2) newcards.php. NOTE: the card_id vector is already covered by CVE-2006-1230. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
61751 | CVE-2006-3068 | IBM DB2 Universal Database (UDB) before 8.2 FixPak 12 allows remote attackers to cause a denial of service (application crash) by sending "incorrect information ... regarding the package name/creator," which leads to a "memory overwrite." | 2 | 5 | Medium | 2016-12-20 | 2011-10-17 | View |
Page 314 of 17672, showing 5 records out of 88360 total, starting on record 1566, ending on 1570