NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65409  CVE-2006-6866  STphp EasyNews PRO 4.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain usernames, email addresses, and password hashes via a direct request for data/users.txt.    7.8  High  2016-12-20  2011-03-07  View
65666  CVE-2006-7123  Multiple SQL injection vulnerabilities in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allow remote attackers to execute arbitrary SQL commands via (1) unspecified parameters when importing the (a) ip-to-country.csv file; and the (2) HTTP Referer, (3) HTTP User Agent, and (4) HTTP Accept Language headers to (b) bsqtemplateinc.php.    7.5  High  2016-12-20  2008-09-05  View
70530  CVE-2004-0062  Integer overflow in the rnd arithmetic rounding function for various versions of FishCart before 3.1 allows remote attackers to "cause negative totals" via an order with a large quantity.    7.5  High  2016-12-20  2016-10-17  View
73090  CVE-2004-2713  ** DISPUTED ** Zone Alarm Pro 1.0 through 5.1 gives full access to %windir%Internet Logs* to the EVERYONE group, which allows local users to cause a denial of service by modifying the folder contents or permissions. NOTE: this issue has been disputed by the vendor, who claims that it does not affect product functionality since the same information is also saved in a protected file.    1.9  Low  2016-12-20  2008-09-05  View
58754  CVE-2006-0007  Buffer overflow in GIFIMP32.FLT, as used in Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, and other products, allows user-assisted attackers to execute arbitrary code via a crafted GIF image that triggers memory corruption when it is parsed.    9.3  High  2016-12-20  2011-03-07  View

Page 753 of 17672, showing 5 records out of 88360 total, starting on record 3761, ending on 3765

Actions