NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60176 | CVE-2006-1467 | Integer overflow in the AAC file parsing code in Apple iTunes before 6.0.5 on Mac OS X 10.2.8 or later, and Windows XP and 2000, allows remote user-assisted attackers to execute arbitrary code via an AAC (M4P, M4A, or M4B) file with a sample table size (STSZ) atom with a "malformed" sample_size_table value. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
60688 | CVE-2006-1983 | Multiple heap-based buffer overflows in Mac OS X 10.4.6 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) PredictorVSetField function for TIFF or (2) CFAllocatorAllocate function for GIF, as used in applications that use ImageIO or AppKit. NOTE: the BMP vector has been re-assigned to CVE-2006-2238 because it affects a separate product family. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
60944 | CVE-2006-2241 | PHP remote file inclusion vulnerability in show.php in Fast Click SQL Lite 1.1.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the path parameter. NOTE: This is a different vulnerability than CVE-2006-2175. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
61456 | CVE-2006-2771 | admin/radera/tabort.asp in Hogstorps hogstorp guestbook 2.0 does not verify user credentials, which allows remote attackers to delete arbitrary posts via a modified delID parameter. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
62736 | CVE-2006-4079 | Cross-site scripting (XSS) vulnerability in newpost.php in DeluxeBB 1.08, and possibly earlier, allows remote attackers to inject arbitrary web script or HTML via the subject parameter (aka the topic title field). | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 613 of 17672, showing 5 records out of 88360 total, starting on record 3061, ending on 3065