NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61716 | CVE-2006-3032 | Multiple cross-site scripting (XSS) vulnerabilities in Xtreme ASP Photo Gallery 1.05 and earlier, and possibly 2.0 (trial), allow remote attackers to inject arbitrary web script or HTML via the (1) catname and (2) total parameters in (a) displaypic.asp, and the (3) catname parameter in (b) displaythumbs.asp. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
61972 | CVE-2006-3293 | parse_notice (TiCPU) in EnergyMech (emech) before 3.0.2 allows remote attackers to cause a denial of service (crash) via empty IRC CTCP NOTICE messages. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
63252 | CVE-2006-4619 | The start update window in update.exe in Avira AntiVir PersonalEdition Classic 7.0 build 151 allows local users to gain system privileges via a "Shatter" style attack on the (1) IParam parameter, and the (2) PBM_GETRANGE and (3) PBM_SETRANGE messages in an unspecified progress bar. NOTE: some details are obtained from third party information. | 2 | 4.6 | Medium | 2016-12-20 | 2008-09-05 | View | |
64276 | CVE-2006-5701 | Double free vulnerability in squashfs module in the Linux kernel 2.6.x, as used in Fedora Core 5 and possibly other distributions, allows local users to cause a denial of service by mounting a crafted squashfs filesystem. | 2 | 4.9 | Medium | 2016-12-20 | 2010-09-15 | View | |
64788 | CVE-2006-6227 | The Core::Receive function in neonet/core.cpp for NeoEngine 0.8.2 and earlier, and CVS 3422, allow remote attackers to cause a denial of service (engine crash) via a message with a large uiMessageLength that produces a failed memory allocation and a null pointer dereference. | 2 | 5 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 753 of 17672, showing 5 records out of 88360 total, starting on record 3761, ending on 3765