NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
65522  CVE-2006-6979  The ruby handlers in the Magnatune component in Amarok do not properly quote text in certain contexts, probably including construction of an unzip command line, which allows attackers to execute arbitrary commands via shell metacharacters.    7.5  High  2016-12-20  2011-06-16  View
243  CVE-2008-0258  Cross-site scripting (XSS) vulnerability in index.php in PHP Running Management (phpRunMan) before 1.0.3 allows remote attackers to inject arbitrary web script or HTML via the message parameter.    4.3  Medium  2017-01-03  2008-09-05  View
65779  CVE-2006-7236  The default configuration of xterm on Debian GNU/Linux sid and possibly Ubuntu enables the allowWindowOps resource, which allows user-assisted attackers to execute arbitrary code or have unspecified other impact via escape sequences.    9.3  High  2016-12-20  2009-02-26  View
499  CVE-2008-0524  Cross-site request forgery (CSRF) vulnerability in the management interface in multiple Yamaha RT series routers allows remote attackers to change password settings and probably other configuration settings as administrators via unspecified vectors.    7.5  High  2017-01-03  2008-09-05  View
755  CVE-2008-0784  graph.php in Cacti 0.8.7 before 0.8.7b and 0.8.6 before 0.8.6k allows remote attackers to obtain the full path via an invalid local_graph_id parameter and other unspecified vectors.    Medium  2017-01-03  2011-03-07  View

Page 14686 of 17672, showing 5 records out of 88360 total, starting on record 73426, ending on 73430

Actions