NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
61570 | CVE-2006-2885 | Multiple cross-site scripting (XSS) vulnerabilities in KnowledgeTree Open Source 3.0.3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) fDocumentId parameter in view.php and the (2) fSearchableText parameter in /search/simpleSearch.php. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
61826 | CVE-2006-3147 | Unspecified vulnerability in Hosting Controller before 6.1 (aka Hotfix 3.2) allows remote authenticated attackers to gain host admin privileges, list all resellers, or change resellers" passwords via unspecified vectors. NOTE: due to the lack of precise details, it is not clear whether this is related to a previously disclosed issue such as CVE-2005-1788. | 2 | 6.5 | Medium | 2016-12-20 | 2011-03-07 | View | |
62082 | CVE-2006-3404 | Buffer overflow in the xcf_load_vector function in app/xcf/xcf-load.c for gimp before 2.2.12 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via an XCF file with a large num_axes value in the VECTORS property. | 2 | 5.1 | Medium | 2016-12-20 | 2011-03-07 | View | |
62338 | CVE-2006-3670 | Stack-based buffer overflow in Winlpd 1.26 allows remote attackers to execute arbitrary code via a long string in a request to TCP port 515. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View | |
62594 | CVE-2006-3936 | system/workplace/editors/editor.jsp in Alkacon OpenCms before 6.2.2 allows remote authenticated users to read the source code of arbitrary JSP files by specifying the file in the resource parameter, as demonstrated using index.jsp. | 2 | 4 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 756 of 17672, showing 5 records out of 88360 total, starting on record 3776, ending on 3780