Show filters
198 Total Results
Displaying 161-170 of 198
Sort by:
Attacker Value
Unknown
CVE-2007-0084
Disclosure Date: January 05, 2007 (last updated November 08, 2023)
Buffer overflow in the Windows NT Message Compiler (MC) 1.00.5239 on Microsoft Windows XP allows local users to gain privileges via a long MC-filename. NOTE: this issue has been disputed by a reliable third party who states that the compiler is not a privileged program, so privilege boundaries cannot be crossed
0
Attacker Value
Unknown
CVE-2006-6520
Disclosure Date: December 14, 2006 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Messageriescripthp 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) pseudo parameter to (a) existepseudo.php, the (2) email parameter to (b) existeemail.php, or the (3) pageName or (4) cssform parameter to (c) Contact/contact.php.
0
Attacker Value
Unknown
CVE-2006-6521
Disclosure Date: December 14, 2006 (last updated October 04, 2023)
SQL injection vulnerability in lire-avis.php in Messageriescripthp 2.0 allows remote attackers to execute arbitrary SQL commands via the aa parameter.
0
Attacker Value
Unknown
CVE-2006-6151
Disclosure Date: November 28, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in centre.php in Messagerie Locale as of 20061127 allows remote attackers to execute arbitrary PHP code via a URL in the page parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2006-4191
Disclosure Date: August 17, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in memcp.php in XMB (Extreme Message Board) 1.9.6 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the langfilenew parameter, as demonstrated by injecting PHP sequences into an Apache HTTP Server log file, which is then included by header.php.
0
Attacker Value
Unknown
CVE-2006-1058
Disclosure Date: April 04, 2006 (last updated February 22, 2025)
BusyBox 1.1.1 does not use a salt when generating passwords, which makes it easier for local users to guess passwords from a stolen password file using techniques such as rainbow tables.
0
Attacker Value
Unknown
CVE-2006-1396
Disclosure Date: March 26, 2006 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in Cholod MySQL Based Message Board allow remote attackers to inject arbitrary web script or HTML via unknown vectors. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2006-1395
Disclosure Date: March 26, 2006 (last updated February 22, 2025)
SQL injection vulnerability in mb.cgi in Cholod MySQL Based Message Board allows remote attackers to execute arbitrary SQL commands via unspecified vectors in a showmessage action, possibly the username parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2005-4471
Disclosure Date: December 22, 2005 (last updated February 22, 2025)
POP3 service in Avaya Modular Messaging Message Storage Server (MSS) 2.0 SP 4 and earlier allows remote attackers to cause a denial of service (infinite loop) via crafted packets.
0
Attacker Value
Unknown
CVE-2005-2667
Disclosure Date: August 23, 2005 (last updated February 22, 2025)
Unknown vulnerability in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allows attackers to cause a denial of service via unknown vectors, aka the "CAM TCP port vulnerability."
0