NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
64726  CVE-2006-6165  ** DISPUTED ** ld.so in FreeBSD, NetBSD, and possibly other BSD distributions does not remove certain harmful environment variables, which allows local users to gain privileges by passing certain environment variables to loading processes. NOTE: this issue has been disputed by a third party, stating that it is the responsibility of the application to properly sanitize the environment.    7.2  High  2016-12-20  2008-09-05  View
65494  CVE-2006-6951  Cross-site scripting (XSS) vulnerability in blog.php in OdysseusBlog allows remote attackers to inject arbitrary web script or HTML via the page parameter.    6.8  Medium  2016-12-20  2008-09-05  View
215  CVE-2008-0230  PHP remote file inclusion vulnerability in php121db.php in osDate 2.0.8 and possibly earlier versions allows remote attackers to execute arbitrary PHP code via a URL in the php121dir parameter.    7.5  High  2017-01-03  2008-09-05  View
66007  CVE-2005-0243  Yahoo! Messenger 6.0.0.1750, and possibly other versions before 6.0.0.1921, does not properly display long filenames in file dialog boxes, which could allow remote attackers to trick users into downloading and executing programs via file names containing a large number of spaces and multiple file extensions.    Medium  2017-01-03  2008-09-05  View
1495  CVE-2008-1551  SQL injection vulnerability in viewcat.php in the Photo 3.02 module for RunCMS allows remote attackers to execute arbitrary SQL commands via the cid parameter.    7.5  High  2017-01-03  2008-09-05  View

Page 1419 of 17672, showing 5 records out of 88360 total, starting on record 7091, ending on 7095

Actions