NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59768 | CVE-2006-1045 | The HTML rendering engine in Mozilla Thunderbird 1.5, when "Block loading of remote images in mail messages" is enabled, does not properly block external images from inline HTML attachments, which could allow remote attackers to obtain sensitive information, such as application version or IP address, when the user reads the email and the external image is accessed. | 2 | 2.6 | Low | 2016-12-20 | 2011-03-07 | View | |
60024 | CVE-2006-1314 | Heap-based buffer overflow in the Server Service (SRV.SYS driver) in Microsoft Windows 2000 SP4, XP SP1 and SP2, Server 2003 up to SP1, and other products, allows remote attackers to execute arbitrary code via crafted first-class Mailslot messages that triggers memory corruption and bypasses size restrictions on second-class Mailslot messages. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
60280 | CVE-2006-1572 | SQL injection vulnerability in post.php in Oxygen 1.1.3 allows remote attackers to execute arbitrary SQL commands via the fid parameter in a newthread action. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
60536 | CVE-2006-1831 | Direct static code injection vulnerability in sysinfo.cgi in sysinfo 1.21 and possibly other versions before 2.25 allows remote attackers to execute arbitrary commands via a leading ; (semicolon) in the name parameter in a systemdoc action, which is injected into phpinfo.php. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
60792 | CVE-2006-2087 | The Gmax Mail client in Hitachi Groupmax before 20060426 allows remote attackers to cause a denial of service (application hang or erroneous behavior) via an attachment with an MS-DOS device filename. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View |
Page 695 of 17672, showing 5 records out of 88360 total, starting on record 3471, ending on 3475