NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
63670  CVE-2006-5064  Multiple cross-site scripting (XSS) vulnerabilities in BirdBlog 1.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) entryid parameter in comment.php, (2) page parameter in index.php, or the (3) uid parameter in user.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information.    5.1  Medium  2016-12-20  2008-09-05  View
65206  CVE-2006-6662  Unspecified vulnerability in Linux User Management (novell-lum) on SUSE Linux Enterprise Desktop 10 and Open Enterprise Server 9, under unspecified conditions, allows local users to log in to the console without a password.    4.1  Medium  2016-12-20  2008-09-05  View
183  CVE-2008-0198  Multiple cross-site request forgery (CSRF) vulnerabilities in wp-contact-form/options-contactform.php in the WP-ContactForm 1.5 alpha and earlier plugin for WordPress allow remote attackers to perform actions as administrators via the (1) wpcf_question, (2) wpcf_success_msg, or (3) wpcf_error_msg parameter to wp-admin/admin.php.    4.3  Medium  2017-01-03  2008-09-05  View
695  CVE-2008-0724  The Everything Development Engine in The Everything Development System Pre-1.0 and earlier stores passwords in cleartext in a database, which makes it easier for context-dependent attackers to obtain access to user accounts.    Medium  2017-01-03  2008-09-05  View
66487  CVE-2005-0737  Buffer overflow in Yahoo! Messenger allows remote attackers to execute arbitrary code via the offline mode.    7.5  High  2017-01-03  2008-09-05  View

Page 1219 of 17672, showing 5 records out of 88360 total, starting on record 6091, ending on 6095

Actions