NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60278 | CVE-2006-1570 | Cross-site scripting (XSS) vulnerability in Esqlanelapse 2.0 and 2.2 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
60534 | CVE-2006-1829 | EAServer Manager in Sybase EAServer 5.2 and 5.3 allows remote authenticated users, possibly guests, to obtain password credentials of arbitrary users via unspecified vectors involving (1) connection caches, (2) open password prompts, and (3) stored custom connection profiles. | 2 | 4 | Medium | 2016-12-20 | 2011-03-07 | View | |
60790 | CVE-2006-2085 | Multiple buffer overflows in (1) CxAce60.dll and (2) CxAce60u.dll in SpeedProject Squeez 5.10 Build 4460, and SpeedCommander 10.52 Build 4450 and 11.01 Build 4450, allow user-assisted remote attackers to execute arbitrary code via an ACE archive that contains a file with a long filename. | 2 | 5.1 | Medium | 2016-12-20 | 2011-09-20 | View | |
61046 | CVE-2006-2344 | SQL injection vulnerability in inc/elementz.php in AliPAGER 1.5, with magic_quotes_gpc disabled, allows remote attackers to execute arbitrary SQL commands via the ubild parameter. | 2 | 6.4 | Medium | 2016-12-20 | 2011-03-07 | View | |
61302 | CVE-2006-2607 | do_command.c in Vixie cron (vixie-cron) 4.1 does not check the return code of a setuid call, which might allow local users to gain root privileges if setuid fails in cases such as PAM failures or resource limits, as originally demonstrated by a program that exceeds the process limits as defined in /etc/security/limits.conf. | 2 | 7.2 | High | 2016-12-20 | 2011-03-07 | View |
Page 684 of 17672, showing 5 records out of 88360 total, starting on record 3416, ending on 3420