NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61048 | CVE-2006-2346 | vpopmail 5.4.14 and 5.4.15, with cleartext passwords enabled, allows remote attackers to authenticate to an account that does not have a cleartext password set by using a blank password to (1) SMTP AUTH or (2) APOP. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
61304 | CVE-2006-2609 | artmedic newsletter 4.1.2 and possibly other versions, when register_globals is enabled, allows remote attackers to modify arbitrary files and execute arbitrary PHP code via the email parameter to newsletter_log.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
61560 | CVE-2006-2875 | Stack-based buffer overflow in the CL_ParseDownload function of Quake 3 Engine 1.32c and earlier, as used in multiple products, allows remote attackers to execute arbitrary code via a svc_download command with compressed data that triggers the overflow during expansion. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
61816 | CVE-2006-3137 | Cross-site scripting (XSS) vulnerability in productDetail.asp in Edge eCommerce Shop allows remote attackers to inject arbitrary web script or HTML via the cart_id parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
62072 | CVE-2006-3394 | SQL injection vulnerability in the files mod in index.php in BXCP 0.3.0.4 allows remote attackers to execute arbitrary SQL commands via the where parameter in a view action. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 696 of 17672, showing 5 records out of 88360 total, starting on record 3476, ending on 3480