NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
63670 | CVE-2006-5064 | Multiple cross-site scripting (XSS) vulnerabilities in BirdBlog 1.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) entryid parameter in comment.php, (2) page parameter in index.php, or the (3) uid parameter in user.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information. | 2 | 5.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
65206 | CVE-2006-6662 | Unspecified vulnerability in Linux User Management (novell-lum) on SUSE Linux Enterprise Desktop 10 and Open Enterprise Server 9, under unspecified conditions, allows local users to log in to the console without a password. | 2 | 4.1 | Medium | 2016-12-20 | 2008-09-05 | View | |
183 | CVE-2008-0198 | Multiple cross-site request forgery (CSRF) vulnerabilities in wp-contact-form/options-contactform.php in the WP-ContactForm 1.5 alpha and earlier plugin for WordPress allow remote attackers to perform actions as administrators via the (1) wpcf_question, (2) wpcf_success_msg, or (3) wpcf_error_msg parameter to wp-admin/admin.php. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
695 | CVE-2008-0724 | The Everything Development Engine in The Everything Development System Pre-1.0 and earlier stores passwords in cleartext in a database, which makes it easier for context-dependent attackers to obtain access to user accounts. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
66487 | CVE-2005-0737 | Buffer overflow in Yahoo! Messenger allows remote attackers to execute arbitrary code via the offline mode. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 1219 of 17672, showing 5 records out of 88360 total, starting on record 6091, ending on 6095